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NETWORK ACCOUNTING AND BILLING SYSTEM AND METHOD 
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BACKGROUND OF THE INVENTION 



A. Field of the Invention 

This invention relates to the field of computer networks. In particular, 
the invention relates to accounting and billing for services in a computer 
network. 

B. Description of the Related Art 

The low cost of Internet connectivity and a wide range of services are 
driving and more people onto the Internet, which is driving the deployment of 
TCP/IP networks. This process has led to a new market of client-server 
applications that enables the user to interact with other users and computer 
systems around the world. The use of these applications is consuming more and 
more Intranet and Internet bandwidth. 

New applications such as "voice over IP (Internet Protocol)" and 
streaming audio and video require even more bandwidth and a different quality 
of service than email, or other less real-time applications. Also, the type quality 
of service can vary according to the needs of the user. For example, typically, 
businesses do not tolerate unavailable network services as easily as consumers. 
Internet Service Providers (ISPs) therefore would like to price their available 
bandwidth according to a user's needs. For example, flat monthly pricing may 
be the best billing model for consumers, but businesses may want to be billed 
according to their used bandwidth at particular qualities of service. 
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As ISPs continue lo differentiate themselves by providing additional 
services, enterprise information technology managers will face similar problems 
to account for the escalating Intranet operating costs. 

Therefore, ISPs and enterprise information technology managers will 
5 want to account for session logging, bandwidth usage, directory data and 

application session information from a variety of sources. 

Due to the diversity of IP data sources (e.g., routers, hubs etc.), the need 
for effect tracking far exceeds the problems addressed by telephone companies. 
Telephone companies track information such as circuit usage so it can be 
1 0 correlated with account information. For example, businesses may use leased 
lines, consumers may have " Friends and Family" plans, cellular phones have 
different roamer fees according to the location of the user, etc. Typically, the 
phone company captures all of the data and uses batch processing to aggregate 
the information into specific user accounts. For example, all the long distance 
1 5 calls made during a billing period are typically correlated with the Friends and 
Family list for each phone account at the end of a billing period for that account. 
This requires a significant amount of computing power. However, this type of 
problem is significantly simpler than attempting to track and bill for every 
transaction in an IP network. Therefore, what is desired is a system that allows 
20 for accounting and billing of transactions on IP based networks. 

The problem is even more difficult in IP network traffic because the 
information sources can exist and many different levels of the OSI network 
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model, throughout heterogeneous networks. Potential sources of information 
include packet use from routers, firewall authentication logging, email data, ISP 
session logging, and application layer use information. Therefore, what is 
desired is a system and method that track IP network usage information across 
5 multiple layers of the OSI network model. 
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SUMMARY OF THE INVENTION 

A network accounting and billing system and method are described. In 
some embodiments, the system can access any network related information 
sources such as traffic statistics provided by routers and switching hubs as well 
5 as application server access logs. The information can be accumulated in a 
central database for creating auditing, accounting and billing reports. 
Alternatively, the information can be sent directly to other systems such as 
rating engines used in customer care and billing systems. 

In one embodiment, network traffic information is capmred at network 

1 0 information sources (examples of information sources include network devices). 

These sources provide detailed information about the network communications 
transactions at a network device. Importantly, different types of sources can 
provide different types of information. Gatherer devices gather the detailed 
information from the various information source devices and convert the 

1 5 information into standardized information. The gatherer devices can correlate 

the gathered information with account information for network transaction 
accounting. Manager devices manage the gatherer devices and store the 
gathered standardized information. The manager devices eliminate duplicate 
network information that may exist in the standardized information. The 

20 manager devices also consolidate the information. Importantly, the information 
stored by the manager devices represents the consolidated, account correlated. 
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network transaction information used for billing. In addition to account 

information, transaction information can be correlated to other information such 
as geography information (e.g., the location of an accessed server) and/or 
transaction routing information (as may be used in peering agreements between 
5 Internet Service Providers). The system thereby provides a distributed network 
accounting and billing system. 

In some embodiments, the gatherer devices can access sources through 
proxy gateways, firewalls, and/or address translation barriers. 

In some embodiments, the gatherer devices can correlate the information 
1 0 about a specific transaction with a particular account by accessing the 
transaction's source and/or destination information. The source and/or 
destination information is then correlated with account information from an 
account information database. 
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BRIEF DESCRIPTION OF THE FIGURES 

The figures illustrate the invention by way of example. The invention is 
not meant to be limited to only those embodiments of shown in the Figures. The 
same reference in different figures indicates the same element is being used in 
5 those figures. 

Figure 1 illustrates a system including one embodiment of the invention. 

Figure 2 illustrates an example of the data distillation used in the system 
of Figure 1. 

Figure 3 illustrates data enhancements used in the data distillation. 
1 0 Figure 4A illustrates example field enhancements that can be included in 

the data enhancements. 

Figure 4B illustrates the creation of an enhanced record. 

Figtire 5 illustrates an example record merge. 

Figure 6 illustrates an example of an alternative embodiment of the 

1 5 system. 
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DETAILED DESCRIPTION 



A. System Overview 

One embodiment of the system includes a multi-source, multi-layer 
network usage metering and mediation solution that gives Network Service 
5 Providers (NSPs), including Internet Service Providers (ISPs) and enterprise 

network(Intranet) operators, the information needed to set the right-price for IP 
(Internet Protocol) services. With the system, the providers can generate 
accurate usage-based billing and implement usage-based charge-back models. 
The system derives IP session and transaction information, collected in real 
10 time, from a multitude of network elements. The system gathers, correlates, and 

transforms data from routers, switches, firewalls, authentication servers, LDAP, 
Web hosts, DNS, and other devices to create comprehensive usage and billing 
records. 

The system transforms raw transaction data from network devices into 
1 5 useful billing records though policy-based filtering, aggregation, and merging. 

The result is a set of detail records (DRs). In some embodiments, the detail 
records are XaCCT Detail Records (XDRs^w) available from XaCCT 
Technologies. DRs are somewhat similar in concept to the telephony industry's 
Call Detail Records (CDRs). Thus, DRs can be easily integrated with existing 
20 Customer Care and Billing (CCB) systems. 



SUBSTITUTE SHEET (RULE 2B) 



wo 99/27556 PCT/US98/24963 

In addition to billing data, DRs enable NSPs to deploy new services 
based on documented usage trends, plan network resource provisioning, and 
audit service usage. The system provides a clear picture of user-level network 
service use by tracking a variety of metrics such as actual session Quality of 
5 Service (QoS),traffic routes, and end-user application transactions. 

The system is based on a modular, distributed, highly scalable 
architecture capable of running on multiple platforms. Data collection and 
management is designed for efficiency to minimize impact on the network and 
system resources. 

1 0 The system minimizes network impact by collecting and processing data 

close to its source. Modular architecture provides maximum configuration 
flexibility, and compatibility with multiple network information sources. 

The system, or other embodiments, may have one or more of the 
following features. 

1 5 Data collection can be from a wide range of network devices and 

services, spanning all layers of the network - from the physical layer to the 
application layer. 

Real-time, policy-based filtering, aggregation, enhancement and 
merging creates accurate, detailed and comprehensive session detail records 

20 (DRs). 

Real time correlation of data from various sources allows billing record 
enhancement. 
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Leverages existing investment through integration with any customer 
care & billing solution, reducing costs, minimizing risks and shortened time-to- 
market. 

Non-intrusive operation eliminates any disruption of network elements 
5 or services. 

Web-based user interface allows off-the-shelf browsers to access the 
system, on-demand, locally or remotely. 

Carrier-class scalability allows expansion to fit an NSPs needs without 
costly reconfigiiration. 

Distributed filtering and aggregation eliminates system capacity 
bottlenecks. 

Efficient, centralized system administration allows on-the-fly system 
reconfigurations and field upgrades. 

Customized reporting with built-in report generation or an NSPs choice 
1 5 of off-the-shelf graphical reporting packages. 

Comprehensive network security features allow secure communication 
between system components and multiple levels of restricted access. 

B. Svstem Details 

The following describes the system 100 of Figure 1. The system 100 
20 allows NSPs to account for and bill for IP network communications. The 

following paragraphs first list the elements of Figure 1, then describes those 
elements and then describes how the elements work together. Importantly, the 

10 
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distributed data gathering, filtering and enhancements performed in the system 
100 enables load distribution. Granular data can reside in the peripheries of the 
system 1 00, close to the information sources. This helps avoids reduce 
congestion in network bottlenecks but still allows the data to be accessible from 
5 a central location. In previous systems, all the network information flows to one 

location, making it very difficult to keep up with the massive record flows from 
the network devices and requiring huge databases. 

The following lists the elements of Figure 1 . Figure 1 includes a number 
of information source modules (ISMs) including an ISM 110, an ISM 120, an 

10 ISM 130, an ISM 136, an ISM 140, and an ISM 150. The system also includes a 

number of network devices, such as a proxy server 101, a DNS 102, a firewall 
103, an LDAP 106, a CISCO NetFlow 104, and a RADIUS 105. The system 
also includes a number of gatherers, such as a gatherer 161, a gatherer 162, a 
gatherer 163, a gatherer 164, and a gatherer 165. The system of Figure 1 also 

1 5 includes a central event manager (CEM) 1 70 and a central database (repository) 

175. The system also includes a user interface server 185 and a number 
terminals or clients 180. 

This paragraph describes how the elements of Figure 1 are coupled. The 
various network devices represent devices coupled to an IP network such as the 

20 Internet. The network devices perform various functions, such as the proxy 

server 101 providing proxy service for a number of clients. Each network device 
is coupled to a corresponding ISM. For example, the proxy server 101 is 
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coupled to the ISM 1 10. The DNS 102 is coupled to the ISM 120. The firewall 
103 is coupled to the ISM 130. The ISM 136 is coupled to the LDAP 106. The 
ISM 140 is coupled to the CISCO NetFlow 104. The ISM 150 is coupled to the 
RADIUS 105. Each gatherer is associated with at least one ISM. Thus, the 

5 gatherer 1 6 1 is associated with the ISM 1 1 0 and is therefore coupled to that 

ISM. The gatherer 162 is coupled to the ISM 120. The gatherer 163 is coupled 
to the ISM 130 and the ISM 136. The gatherer 164 is coupled to the ISM 140. 
The gatherer 165 is coupled to the ISM 150. The various gatherers are coupled 
to the CEM 170. The user interface server is coupled to the terminals 180 and 

10 the CEM 170. 

The following paragraphs describe each of the various elements of 

Figure 1. 

Network Devices 

The network devices represent any devices that could be included in a 
1 5 network. (Throughout the description, a network device, unless specifically 

noted otherwise, also refers to an application server.) A network device 
represents a subset of information sources that can be used by the system 100. 
That is, the network devices are merely representative of the types of sources of 
information that could be accessed. Other devices such as on-line transaction 
20 processing databases can be accessed in other embodiments of the invention. 

Typically, the network devices keep logging and statistical information about 
their activity. A network information source can be the log file of a mail server, 
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the logging facility of a firewall, a traffics statistics table available on a router 
and accessible through SNMP, a database entry accessible through the Internet, 
an authentication server's query interface, etc. The network devices represent 
the information sources accessed by the ISMs. 
5 Each type of network device can be accessing using a different method 

or protocols. Some generate logs while others are accessible via SNMP, others 
have proprietary APIs or use other protocols. 

ISMs 

The ISMs act as an interface between the gatherers and the network 
10 devices enabling the gatherers to collect data from the network devices. Thus, 

the ISMs represent modular, abstract interfaces that are designed to be platform- 
neutral. The information source modules act as interfaces or "translators", 
sending IP usage data, in real time, from the network devices to the gatherers. 
Each ISM is designed for a specific type of network data source. (In other 
1 5 embodiments, some ISM are generic in that they can extract information fi"om 

muhiple network devices). ISMs can be packaged separately, allowing NSPs to 
customize ISM configurations to meet the specific requirements of their 
network. For example, in the system of Figure 1, if the NSP did not have Cisco 
NetFlow devices, then the ISM 140 would not have to be included. 
20 The ISMs can communicate with its corresponding network device using 

protocols and formats such as UDP/IP, TCP/IP, SNMP, telnet, file access, 
ODBC, native API, and others. 
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In some embodiments, the reliability of system 1 00 is enhanced through 
on-the-fly dynamic reconfiguration, allowing the NSP to add or remove 
modules without disrupting ongoing operations. In these embodiments, the 
CEM 1 70 can automatically update the ISMs. 
5 The following ISMs are available in some embodiments of the 

invention. 

• Categorizer - Classifies a session to a category according to user- 
defined Boolean expression. 

• DNS (e.g. ISM 120) - Resolves host names and IP addresses. 

10 • Generic Proxy Server (e.g., ISM 11 0) - Collects data from access 

logs in a common log format. 

• Port / Protocol Resolution - Converts protocol/port information to 
account names and vice versa. 

• Checkpoint Fire Wall- 1 - Collects data from Fire Wall- 1 accounting 
1 5 log and security log. 

• Cisco lOS IP Accounting - Collects accounting data from a Cisco 
router using lOS IP accounting. 

• Cisco NetFlow Switching - Collects session data from a Cisco router 
via NetFlow switching. 

20 • NETRANET - Collects information from a standard network device, 

• Netscape Proxy Server - Collects data from a Netscape Proxy Server. 
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• Microsoft Proxy Server - Collects data from a Microsoft Proxy 
Server. 

ISMs can be synchronous, asynchronous or pipe. 

The data from an asynchronous ISM is dynamic so that the 
5 asynchronous ISM reacts to the information and relays it to the associated 

gatherer without prompting from other information sources in the system 100. 
If the firewall 1 03 were a Checkpoint FireWalM , then the ISM 130 would be 
an example of an asynchronous ISM. When a network session is initiated, the 
details are recorded by the Fire Wall- 1 103. The corresponding ISM 130 receives 
10 the details and passes them on automatically to the gatherer 163. 

Synchronous ISMs provide its information only when accessed by a 
gatherer. The ISM 120 is an example of a synchronous ISM. The DNS server 
102 maintains information matching the IP addresses of host computers to their 
domain addresses. The ISM 120 accesses the DNS server 102 only when the 
1 5 ISM 120 receives a request from the gather 162. When the DNS server 102 

returns a reply, the ISM 120 relays the reply information to the gatherer 162. 

Pipe ISMs operate on record flows (batches of records received from 
information sources). Pipe ISMs process one or more enhancement flows the 
records as the flows arrive. The pipe ISM may initiate new record flows or may 
20 do other things such as generate alerts or provision network elements to provide 
or stop services. The pipe is implemented as an ISM to keep the internal 
coherency and logic of the architecture. (Record flows can terminate in a 

15 
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database or in a pipe ISM. The pipe ISM can perform filtering and aggregation, 
send alarms, or act as a mediation system to provision network elements when 
some event occurs or some accumulated value is surpassed. Specifically, pipe 
ISMs can act to enable pre-payment systems to disable certain services such as a 
5 voice IP call, when the time limit is surpassed or amount of data is reached.) 

The gatherers can include caches and buffers for storing information 
from the ISMs. The buffers allow the gatherers to compensate for situations 
where there is a loss of connection with the rest of the system 100. The cache 
sizes can be remotely configured. The cache minimizes the number of accesses 
1 0 to the Information Source. 

ISM queries can be cached and parallelized. Caching of synchronous 
ISM queries provides for fast responses. Parallelizing queries allows for 
multiple queries to be processed at the same time. 

Gatherers 

1 5 The gatherers gather the information from the ISMs. In some 

embodiments, the gatherers are multi-threaded, lightweight, smart agents that 
run on non-dedicated hosts, as a normal user application on Windows NT or 
Unix, as a background process, or daemon. What is important though is that the 
gatherers can be any hardware and/or software that perform the functions of a 

20 gatherer. 
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The gatherers can be installed on the same network segment as the 
network device such as router and switch or on the application server itself. This 
placement of a gatherer minimizes the data traffic impact on the network. 

The gatherers collect network session data from one or more ISMs. 
5 Session data can be sent to another gatherer for enhancement or to the CEM 170 
for merging and storing in the central database 170. The gatherers can be 
deployed on an as needed basis for optimal scalability and flexibility. 

The gatherers perform flexible, policy-based data aggregation. 
Importantly, the various types of ISMs provide different data and in different 
10 formats. The gatherers normalize the data by extracting the fields needed by the 
CEM 1 70 and filling in any fields that may be missing. Thus, the gatherers act 
as a distributed filtering and aggregation system. The distributed data filtering 
and aggregation eliminates capacity bottlenecks improving the scalability and 
efficiency of the system 100 by reducing the volume of data sent on the network 
15 to the CEM 170. 

Aggregation can be done by accumulating groups of data record flows, 
generating a single data record for each group. That single record then includes 
the aggregated information. This reduces the flow of the data records. 

Filtering means discarding any record that belongs to a group of 
20 urmeeded data records. Data records are unneeded if they are known to be 

collected elsewhere. A policy framework enables the NSP to configure what to 
collect where. 
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Filtering and/or aggregation can be done at any point along a data 
enhancement (described below) so that aggregation schemes can be based on 
enhanced data records as they are accumulated. The filtering and/or aggregation 
points are treated by the system 100 as pipe ISMs which are flow termination 

5 and flow starting points (ie: like an asynchronous ISM on the starting end and 
like a database on the terminating end). Data enhancement paths and filtering 
and/or aggregation schemes can be based on accumulated parameters such as 
user identification information and a user's contract type. 

As noted above, the PISM can be used in the context of filtering and/or 

1 0 aggregation. One or more record flows can terminate at the PISM and can be 
converted into one or more new record flows. Record flows are grouped based 
on matching rules that apply to some of the fields in the record flows, while 
others are accumulated or undergo some other operation such as "maximum" or 
" average" . Once the groups of accumulated records have reached some 

1 5 threshold, new accumulated records are output. This can be used for example in 
order to achieve a business-hybrid filtering and aggregation data reduction by 
imposing the business rules or ±e usage-based products that are offered to the 
customer, onto the record flows as they are collected in real-time. This is done 
instead of previous system where the information is stored in a database and 

20 then database operations are performed in order to create bills or reports. The 
filtering and aggregation reduces the amount of data that is stored in the central 
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database 175 while not jeopardizing the granularity of data that is necessary in 
order to create creative usage-based products. 

Typically, data collected from a single source does not contain all the 
information needed for billing and accounting, such as user name and 
5 organization. In such cases, the data is enhanced. By combining IP session data 

from multiple sources, such as authentication servers, DHCP and Domain Name 
servers, the gatherers create meaningful session records tailored to the NSP's 
specific requirements. In the example of Figure 1, the gatherer 161 can provide 
information to the gatherer 1 62 so that the source IP address for an Internet 

1 0 session from the proxy server 101 can be combined with the domain address 

from the DNS server 102. 

The enhancement procedure can be triggered by an asynchronous ISM. 
The information from the asynchronous ISM is associated with field 
enhancements in the central database 175. A field enhancement defines how a 

1 5 field in the central database is filled from the source data obtained from the 

asynchronous ISM. Through the field enhancements, the missing parameters are 
added to a record using the data collected from one or more synchronous ISMs. 
Enhancements are described in detail below. 

The gatherers can include caches and buffers for storing information 

20 from the ISMs. The buffers allow the gatherers to compensate for situations 

where there is a loss of connection with the rest of the system 1 00. The caches 
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can reduce the number of accesses to an information source. The buffer and/or 
cache sizes can be remotely configured. 

r.entral Event M anaper (CEM) 

The Central Event Manager (CEM) 170 acts as the central nervous 
5 system of the system 100, providing centralized, efficient management and 
controls of the gatherers and the ISMs. 

The CEM 170 can perform one. or more of the following tasks: 
• Coordinates, controls, and manages the data collection process. The 
CEM 170 coordinates the operation of the gatherers and manages the 
J 0 flow of data through the system 1 00 through the collection scheme 

defined in the system configuration. The latter includes the 
configuration of the gatherers, the ISMs, the network devices, the 
fields in the central database 175 (described below), and the 
enhancement procedures. Based on the collection scheme the CEM 
15 170 determines the system 1 OO's computation flow (the set of 

operations the system 100 must perform to obtain the desired 
information). The CEM 170 then controls all the gatherers, 
instructing them to perform, in a particular sequence, the operations 
defined in the computation flow. The CEM 170 receives the records 
20 collected by the gatherers and stores them in the central database 

175. NSPs can configure the CEM 170 to merge duplicate records 
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before storing them in the central database 1 75. Record merging is 
described below. 

Performs clean-up and aging procedures in the database 175. The 
system 100 collects and stores large amounts of session information 
every day. The CEM 170 removes old data to free space for new data 
periodically. The NSP defines the expiration period for the removal 
of old records. The CEM 170 is responsible for coordinating the 
removal of records from the central database 175. The CEM 170 
places a time stamp on every record when the record enters the 
central database 1 75 and deletes the record after the time period the 
NSP has defined elapses. 

Provides centralized system-wide upgrade, licensing, and data 
security. The NSP can perform version upgrades of the system 100 
at the CEM 170. The gatherers can be automatically upgraded once a 
new version is installed on the host computer of the CEM 1 70. ISMs 
are also installed via the CEM 170 and exported to the gatherers. The 
CEM 170 maintains a list of licenses installed in the system and 
verifies periodically if the system is properly licensed. This feature 
lets the NSP centrally install and uninstall licenses. It also prevents 
unlicensed use of the system 100 and any of its components. 
Monitors the state of the gatherers and ISMs. The gatherers 
periodically communicate with the CEM 170. The CEM 170 
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continuously monitors the state of each gatherer and network devices 
in the system 100, The CEM 170 can be fault-tolerant, that is, it can 
recover from any system crash. It coordinates the recovery of the 
system 100 to its previous state. 
5 In some embodiments, a key directory server is associated with the CEM 

170. To transfer less data between the elements of the system 100, it is desirable 
that each piece of data to carry little descriptive data. For example, if IP address 
data is transferred between a gatherer and the CEM 170, a description of the IP 
address data is typically included. In some embodiments, data name/key, type, 
1 0 and length descriptions are included with the actual IP address data. In other 

embodiments, there the key directory server reduces the amount of descriptive 
information being sent. Every key in the directory server has a type and a 
length. Fields can be identified as variable length. Therefore, data type 
information need not be transmitted between elements in the system 100 if the 
1 5 elements use a common reference key stored in the directory server. Returning 
to the IP address data, by using the key directory server, elements need only 
send two bytes for the key id and four bytes for the actual address. Most of the 
data being sent in the system is relatively short in length. Therefore, the 
directory server helps reduce the amount of information being sent between the 
20 elements in the system 100. 

Keys can be added to the directory server. The directory server can 
therefore support expansion of the kinds of fields being sent by allowing system 

22 



SUBSTITUTE SHEET (RULE 25) 



wo 99/27556 PCT/US98/24963 

elements to update their locally stored key ids. For example, after a recipient 
receives a record with an "unknown" key, it contacts the directory server to get 
the key definition. 

Central Database 

5 The central database 175 is the optional central repository of the 

information collected by the system 100, The central database 175 is but one 
example of a sink for the data generated in the system 100. Other embodiments 
include other configurations. The central database 175 stores and maintains the 
data collected by the gatherers, as well as the information on the configuration 

10 of the system 100. Thus, in configuring the system 100, the NSP defines what 
data will be stored in each field in the central database 1 75 and how that data is 
collected firom the ISMs. 

The information on network sessions is stored in the database in the 
form of a table. Each field in the table represents a network session parameter. 

1 5 Each record describes a network session. The system 100 has a set of pre- 
defined fields that are configured by the CEM 170 on installation. The NSP can 
modify the central database 175 structure by adding, deleting, or modifying 
fields. The NSP access the data in the central database 175 by running queries 
and reports. The old data is removed fi-om the central database 175 to free space 

20 for new data periodically. You can specify the time interval for which records 

are stored in the central database 175. The structure of the central database 175 
with some of the predefined fields is illustrated in the following figure. 
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As each IP session may generate multiple transaction records, during the 
merge process the CEM 170 identifies and discards duplications, enhancing the 
efficiency of the data repository. Generally, data records are passed through the 
merger program, in the CEM 170, into the central database 175. However, the 
5 data records are also cached so that if matching records appear at some point, 
the already stored records can be replaced or enhanced with the new records. 
The database tables that contain the record flows can be indexed, enhancing the 
efficiency of the data repository. A merge is achieved by matching some of the 
fields in a data record and then merging the matching records from at least two 
1 0 record flows, transforming them into one record before updating the central 
database 175. In some embodiments, adaptive tolerance is used to match 
records. Adaptive tolerance allows for a variation in the values of fields that are 
compared (e.g., the time field value may be allowed to differ by some amount, 
but still be considered a match). The adaptive aspect of the matching can 
1 5 include learning the appropriate period to allow for the tolerance. The reason 

that the records that do not match any previous records are sent through into the 
central database 175, in addition to being cached for later matching, is to avoid 
loss of data in case of system failure. 

The following table illustrates an example of the types of records stored 
20 in the central database 175 by the CEM 170. 
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The system 1 00 supports a non-proprietary database format enabling the 
central database 1 75 to run on any of a number of commercially available 
databases (e.g., MS-SQL Server , Oracle Server, DB2, etc.). 

5 User Interface Server and Clients 

The User Interface Server (UIS) 185 allows multiple clients (e.g. 
terminals 180) to access the system ICQ through, the Microsoft Internet 
Explorer with Java™ Plug-in or Netscape Navigator with Java"^"^ Plug-in. Other 
embodiments can use other applications to access the system 100. The main 

1 0 function of the UIS 1 85 is to provide remote and local platform independent 

control for the system 100. The UIS 185 can provide these functions through 
windows that correspond to the various components of the system 100. Access 
to the system 1 00 can be password protected, allowing only authorized users to 
log in to the system and protecting sensitive information. 

1 5 The NSP can perform one or more of the following main tasks through 

the UIS 185: 

• Configure the system 1 00. 

♦ Create and run queries and reports on network activity and resource 
consumption. 
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• Register and license the system 100. 

C. Data Distillation 

Figure 2 illustrates the data distillation process performed by the system 
of Figure 1 . The data distillation aggregates and correlate information from 
many different network devices to compile data useful in billing and network 
accounting. 

First, the ISMs 210 gather data from their corresponding network 
device. Note that for some ISMs (e.g. pipe ISMs), real-time, policy-based 
filtering and aggregation 215 can also be done. This data is then fed to the 
gatherers 220. The gatherers 220 perform data enhancement to complete the 
data from the ISMs 210. The results are provided to the CEM 170. The CEM 
1 70 performs data merges 270 to remove redundant data. The merged data is 
then optionally stored in the central database 1 75 as a billing record 275 or is 
sent directly to an external system. The billing record information can be 
accessed from external applications, through the application interface 290, via a 
data record 280. Filtering and/aggregation and/or data enhancements can be 
done at any stage in the system 100. 

D. Data Enhancement 

As mentioned above, the gatherers 220 provide data enhancement 
features to complete information received from the ISMs 210. The following 
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describes some example data enhancement techniques used in some 
embodiments of the invention. 

Figure 3 illustrates an example of data enhancement. Data enhancement 
comprises a number of field enhancements. A field enhancement specifies how 
the data obtained from the trigger of the enhancement procedure is processed 
before it is placed in a single field in the central database 175. The data can be 
placed in the field directly, or new information may be added to the record by 
applying a Synchronous ISM function. (In the example below, the function is 
"resolve the IP address to a host FQDN"). Field enhancements may involve one 
or multiple steps. There is no limit to the number of steps in a Field 
Enhancement. The data record starts with fields obtained from an asynchronous 
ISM 300. The fields in the DR 300 are then enhanced using the field 
enhancements. The enhanced fields result in the DR 320. 

A visual representation of an enhancement can be presented to the NSP. 
The enhancement may include an itinerary of ISMs starting off with an AISM, 
passing through PISMs, and terminating in the CEM 170. Using this view of the 
system 1 00, the NSP need not be shown the actual flow of data since the flow 
may be optimized later in order to achieve better performance. This is more of a 
graphical logical view of how the enhancement is achieved in steps. (PISMs can 
terminate more than one flow and initiate more than one flow.) 

A visual representation of a field enhancement shows the per-field flow 
of data correlation. This process ends in the CEM 170 or in a PISM. The NSP 
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supplies information telling the system 100 how to reach each of the terminating 
fields (in the CEM 170 or the PISM) starting off from the initiating fields 
(PISM or AISM). Each step of enhancement defines cross correlation with some 
SISM function. 

5 Figure 4A illustrates various field enhancements (410 through 440). A 

field enhancement includes applying zero or more fimctions to a field before 
storing the field in a specified field in the central database 175. 

One-step Field Enhancement 410. The initial source data firom the 
asynchronous ISM is placed directly in a field in the central database 1 75. 
1 0 Example: the field enhancement for the Source IP field. 

Two-step Field Enhancement 420. The initial source data firom the 
asynchronous ISM is used to obtain new additional data fi-om a synchronous 
network device and the new data is placed in a field in the central database 175. 
Example: the field enhancement for the Source Host field. 

Three-step Enhancement 430. The initial source data firom the 
asynchronous ISM is used to obtain additional data firom a synchronous ISM. 
The result is used to obtain more data from another ISM and the resuh is placed 
in a field in the central database 175. 

The following illustrates an example data enhancement. Suppose the 
20 data obtained from a proxy server 101 contains the source IP address of a given 
session, such as 199.203.132.2, but not the complete domain address of the host 
computer (its Fully Qualified Domain Name), such as www.xacct.com. The 
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name of the host can be obtained by another network device - the Domain Name 
System (DNS 102) server. The DNS server 102 contains information that 
matches IP addresses of host computers to their Fully Qualified Domain Names 
(FQDNs). Through an enhancement procedure the information collected from 
5 the proxy server 101 can be supplemented by the information from the DNS 

102. Therefore, the name of the host is added to the data (the data record) 
collected from the proxy server 101 . The process of adding new data to the data 
record from different network devices can be repeated several times until all 
required data is collected and the data record is placed in the central database 
10 175. 

Figure 4B illustrates another example data enhancement where an 
enhanced record 490 is created from an initial netflow record 492. Fields in the 
enhanced record 490 are enhanced from the radius record 494, the QoS policy 
server record 496, the NMS DB record 498, and the LDAP record 499. 

15 Defining Enhancement Procedures 

The following describes the process for defining enhancement 
procedures in some embodiments of the system. Typically defining an 
enhancement procedures for the system 100 includes (1) defining enhancement 
procedures for each asynchronous ISM and (2) configuring field enhancements 

20 for all fields in the central database 175 for which the NSP wants to collect data 
originating from an asynchronous ISM that triggers the corresponding 
enhancement procedure. 
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An enhancement procedure can be defined as follows: 

1 . Access the CEM 170 using the UIS 1 80. 

2. Select the enhancement procedures list using the UIS 1 80. 

3. Define the name of the new enhancement procedure. 

5 4. Select a trigger for the new enhancement procedure. The trigger can 

correspond to any asynchronous ISM in the system 100. 
Alternatively, the trigger can correspond to any asynchronous ISM 
in the system 100 that has not already been assigned to an 
enhancement procedure. 

10 5 . Optionally, a description for the enhancement procedure can be 

provided. 

6. The new enhancement procedure can then be automatically 
populated with the existing fields in the central database 175. 
Optionally, the NSP can defme the fields (which could then be 

1 5 propagated to the central database 175). Alternatively, based upon 

the type of asynchronous ISM, a preset set of fields could be 
proposed to the NSP for editing. What is important is that the NSP 
can define field procedures to enhance the data being put into the 
data records of the central database 175. 

20 7. The NSP can then define the field enhancements for every field in 

the new enhancement procedure for which the NSP wants to collect 
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data from the ISM that is the trigger of the new enhancement 
procedure. 

Defining Field Enhancements 

Defining a field enhancement involves specifying the set of rules used to 
5 fill a database field from the information obtained from the trigger of the 

enhancement procedure. The NSP defines field enhancements for each field in 
which NSP wants to collect data from the trigger. If no field enhancements are 
defined, no data from the trigger will be collected in the fields. For example, 
suppose the firewall asynchronous ISM 130 that triggers an enhancement 
1 0 procedure. Suppose the central database 175 has the following fields: source IP, 

source host, destination IP, destination host, user name, total bytes, service, 
date/time, and URL. If the NSP wants to collect session data for each field 
except the URL from the firewall ISM 130, which triggers the enhancement 
procedure, the NSP defines a field enhancement for each field with the 
1 5 exception of the URL. 

In some embodiments, the field enhancements are part of the 
enhancement procedure and the NSP can only define and modify them when the 
enhancement procedure is not enabled. 

The field enhancements can be defined in a field enhancement 
20 configuration dialog box. The field enhancement configuration dialog box can 
have two panes. The first displays the name of the enhancement procedure, the 
name of its trigger, and the name and data type of the field for which the NSP is 
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defining the field enhancement. The second is dynamic and interactive. Its 
content changes depending on the NSP's input. When first displayed, it has two 
toggle buttons, End and Continue, and a list next to them. The content of the list 
depends on the button depressed. 
5 When End is depressed, the list contains all output fields whose data 

type matches the data type of the field for which the NSP is defming the field 
enhancement. For example, if the field's data type is IP Address, the Ust 
contains all fields that are of the same type, such as source IP and destination IP 
that the AISM supplies. The fields in the Ust can come from two sources: (1) the 
10 source data which the gatherer receives from the trigger and (2) the result 

obtained by applying a synchronous ISM function as a preceding step in the 
field enhancement. The following notation is used for the fields: 

OutputFieldName for the output of a field origination from the trigger 
SISName.FmctiortName(InputArgument).OutputFieldfoT the output of a 

1 5 field that is the result of applying a function 

SISName...OutputField for the output of a field that is the result of 
applying a fiinction as the final step of a field enhancement 
The following examples are presented. 
Source IP is the field provided by the trigger of the enhancement 
20 procedure that contains the IP address of the source host. 

DNS...HostName and DNS.Name(Source IP).Host name are the names 
of a field originating from the resolved fiinction Name of a network device 
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called DNS that resolves the IP address to a domain address. The input 
argument of the function is the field provided by the trigger of the enhancement 
procedure, called source IP. It contains the IP address of the source host. The 
function returns the output field called Host Name that contains the domain 
5 address of the source host. The notation DNS...Host Name is used when the 
field is the result of applying the function as the final step of a field 
enhancement. The notation is DNS.Name(Source IP).Host Name is used when 
the field is used as the input to another function. 

In the user interface, if End is unavailable, none of the output fields 
1 0 matches the data type of the field. 

When Continue is depressed, the list contains all applicable functions of 
the available synchronous network device configured in the system 100. If the 
preceding output does not match the input to a function, it cannot be applied and 
does not appear on the list. 
1 5 The following notation is used for the functions: 

SISName,FunctionName(InputFieldName:lTiputFieldDataType) 
(Output FieldName: OutputFieldDataType) 

When the function has multiple input and/or output arguments, the 
notation reflects this. The arguments are separated by commas. 
20 The following example shows a field enhancement. 

DNS. Address(HostName:String) -> (IP AddressiIP Address) 
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Where DNS is the name of the synchronous ISM (or network device) as 
it appears in the system configuration. 

Address is the name of the function. 

(Host Name:String) is the input to the fonction - host FQDN of data type 

5 String 

a? Address:IP Address) is the output - IP address of data type IP 
Address 

The NSP can define the field enhancement by choosing items firom the 
Hst. The list contains the option <none> when the End button is depressed. 
10 Choosing this option has the same effect as not defining a field enhancement: no 
data from the trigger will be stored in the field in the central database 175. 

At your request, here is one paragraph describing the algorithm(s) 
transforming the user representation of an Enhancement Procedure to an actual 
Computation Flow performed by the system. The source code accompanying 
1 5 this actually implements most of this. Of course, that code relies on the rest of 
the software (lots of other code), that may be required to completely understand 
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data records in the system 100. originating firom an AISM that serves , 
trigger, and terminating at the a database table, or a PISM (Pipe ISM - has the 
behavior of the database of being assigned input keys in much the same way. 
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but being installable/replacable logic in the system after it has been deployed), 
known as the Target of the EP. An EP is represented to the user as a collection 
of Field Enhancements (FEs). Each FE identifies what is performed in order to 
obtain a value (or not, if it is not defined), for that Field (either database field, or 
5 input key to PISM), using values originating fi-om the Trigger AISM, possibly, 

utilizing functions of SISMs available in the system. The NSP defines every FE 
independently of other FEs, and completely defines what value is placed in the 
defined field. 

In contrast to the above description of the presentation to the user of an 
1 0 EP, the system 1 00 (e.g.. the CEM 1 70) computes what is called a Computation 
Flow, which is the actual operational instructions and parameters that are 
instructed to the gatherer's to achieve the desired NSP result (as defined in the 
EP). The Computation Flow is the detailed instructions required to achieve a 
"snowball'* affect, of having data originating from a Trigger (AISM) in one 
1 5 gatherer , undergo specific enhancements by adding results from invocations of 

functions of SISMs with specific input parameters on the same gatherer or other 
gatherers (as required), and removing unused fields along this same path, 
eventually storing the user-configured results in the user-configured fields in an 
optimized fashion. The optimizations applied are: 
20 • Transfer minimal data between any elements in the system; 
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. DO not compute the same function on the same input more than 
once. In other embodiments, this optimization may be changed to 
allow for sharing of intermediary values of field enhancements; 
. Perform local enhancements before going on to a remote gatherer, 
5 . Applya"cost" function to transferring along communication links 

and traverse the minimal cost in a computation flow required to 
achieve correct results. 
This set of optimizations can be performed, in some embodiments, using 
the code in Appendix A. That is, the transformation (from EP to Computation 
, 0 Flow, or simply Flow) is achieved by coupling together eleven algonthms and 
data transformations one after the other. These are described in the code module 
attached. 

Note: 1) Within the code, EP, Rule. Computation Flow are used in some 
cases to refer to the same objects. 2) The eleven transformations that ^e applied 
15 to the user representation of the EP, after being stored in a database structure, 
are outlined beginning at line 124 of the attached source module 
"FlowManager.java". 

F. Record Merges 

Figure 5 illustrates an example record merge. Record merging removes 
20 duplicate records from the central database 175. 

The following example shows how merges work and illustrates the need 
for merging duplicate records. Suppose the system 100 is using two 
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asynchronous ISMs 1 10 and 130. All outbound network traffic going through 
the proxy server 101 is routed through the firewall 103. The firewall 103 records 
the proxy server 101 as the source of all sessions passing through the proxy 
server 101 , although they originate from different workstations on the network. 
5 At the same time, the proxy server 101 records the destination of all sessions as 

the firewall 103, although their actual destinations are the different Internet 
sites. 

. Therefore, all sessions are logged twice by the system 100 and the 
records are skewed. The data from the firewall 103 indicates the destination of a 

1 0 given session^ but not the source (see data record 520), while the data from the 
proxy server 101 records the source, but not the destination (see data record 
510). Defining a merge eliminates the dupUcation of records. 

A merge can be defined instructing the CEM 170 to store the destination 
data obtained from the firewall 103 and the source data from the proxy server 

1 5 101 in the central database 175. The merge will also eliminate the problem of 

skewed data by storing the correct source and destination of the session in the 
central database 175. Both network devices provide information on the URL. 
The latter can be used to identify the fact that the two seemingly independent 
records (5 10 and 520) are actually two logs of the same session. 

20 Two enhancement procedures are defined for the example of Figure 5. 

The trigger of the first, designated Flow One, is the Proxy Server Asynchronous 
Information Source Module. The trigger of the second, Flow Two, is the 
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Firewall Asynchronous Information Source Module. The records from Flow 
One and Flow Two are records of the same session. They both have the same 
value for the URL field. Based on this value, the CEM 170 identifies the two 
records are double logs of the same session. It merges the two data records 
5 taking the Source IP value from Flow One and the Destination IP from Flow 
Two as the values to be stored in the central database 175. 

Defining Merges 

The following describes defining merges. A merge is a set of rules that 
specify how duplicate records fi-om multiple enhancement procedures must be 
1 0 identified and combined before being stored in the central database 1 75. The 
NSP can merge the records from two or more enhancement procedures. To 
define a merge, the NSP identifies the following information. 
• The enhancement procedures included in the merge. 
. How to identify duplicate records (which fields of the records must 

1 5 match). 

. How to combine the records; that is, for each field, which value 
(from which enhancement procedure) must be stored in the central 
database 175. (Optional) 
If the NSP does not specify how records must be combined, the records 

20 are merged as follows: 

• When the values in all but one of the fields are null, the non-null 

value is stored. 
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• When the fields contain non-null values, the value of the first record 
received (chronologically) is stored. 

F. Additional Embodiments 

The following describes additional embodiments of the invention. 
5 In some embodiments, the user interface used by an NSP to configure 

the system 100 can be presented as a graphical representation of the data 
enhancement process. Every step in the enhancement can be shown as a block 
joined to another block (or icon or some graphical representation). The 
properties of a block define the operations within the block. In some 
1 0 embodiments, the entire data enhancement process from network devices to the 
central database 175 can be shown by linked graphics where the properties of a 
graphic are the properties of the enhancement at that stage. 

In some embodiments, multiple CEMs 170 and/or central databases 175 
can be used as data sources (back ends) for datamart or other databases or 
1 5 applications (e.g., customer care and billing systems). 

In some embodiments, the types of databases used are not necessarily 
relational. Object databases or other databases can be used. 

In some embodiments, other platforms are used. Although the above 
description of the system 100 has been IP network focussed with Unix or 
20 Windows NT systems supporting the elements, other networks (non-IP 

networks) and computer platforms can be used. What is important is that some 
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sort of processing and storing capability is available at the gatherers, the CEMs, 
the databases, and the user interface servers. 

In some embodiments, the gatherers and other elements of the system 
100, can be remotely configured, while in other embodiments, some of the 
5 elemems need to be configured directly. For example, a gatherer may not be 
remotely configurable, in which case, the NSP must interface directly with the 
computer running the gatherer. 

In other embodiments, the general ideas described herein can be applied 
to other distributed data enhancement problems. For example, some 
10 embodiments of the invention could be used to perfomi data source extraction 
and data preparation for data warehousing applications. The gatherers would 
interface with ISMs that are designed to extract data from databases (or other 
data sources). The gatherers would perfonn filtering and aggregation depending 
upon the needs of the datamart (in such an embodiment, the central database and 
1 5 CEM could be replaced with/used with a datamart). The data enhancement 
would then be done before storing the information in the datamart. 

Figure 6 illustrates a system 600 where multiple systems 100 are linked 
together. This system could be an ISPs point of presence accounting system. 
The system 620 and the system 610 can store detailed network accounting 
20 information in their local detailed accounting databases. This information can 
then be aggregated and sent over the more expensive long distance links to the 
billing database in the system 630. Customer service information can still be 
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accessed at the detailed accounting database, but the aggregated information 
may be all that is needed to create the bills. 

G. Conclusions 

A network accounting and billing system and method has been 

5 described. In some embodiments, the system can access any network related 

information sources such as traffic statistics provided by routers and switching 
hubs as well as application server access logs. These are accumulated in a 
central database for creating auditing, accounting and billing reports. Because of 
the disn-ibuted architecture, filtering and enhancements, the system efficiently 

1 0 and accurately collects the network usage information for storage in a form that 
is useful for billing and accounting. 
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Appendix A - FlowManager 
Example 

5 // 

// NAME i TITLE: 

// FlowManager Analyzes the various Eahancenuit Rules and creates Computation 

Flows 
// 

10 // ABSTRACT: 

// - Analyzes the various Enhancemnt Rules and creates Computation Flows 
// - Respond to Gatherer Requests for Instructions 

// instructions are stored in ONIRInstruction, which can either be an element 
of a 

15 // vector or a vector of ONlRInstructions in itself 
// - Allow for ReComputation of Particular Flows 

// - implement Helper methods for finding interdependencies between Enhancemnt 

Rules ^ ^ 

// and ISs that are referenced by them, Important when attempting to delete 

20 an IS 

// or When an IS configuration has changed, to see which Enhance»nts n>at be 
// affectetd. 

'// this class is closely related to the Gatherer. EnhanceCompElowStep class, 

25 which acts 

// on the instructions created here. 

// An instruction needs to know the following: 

//I. What type it is (recieve, enhance, send or other) 

// 2. If it is of type enhance: 
30 // 2.1 Where are the Input Unirs for the Enhancement Function 

("Where" means position in the Arguments) 

// 2.2 What IS and what function to perform 

// 2 3 Where in the Arguments to put the function results. 

// 3. If it is of type send, needs to know to whom to send. CEM or another 
35 Gatherer. 

// 

// For further understanding, see Gatherer. EnhanceCompFlowStep 

// 

// CHANGE HISTORY: 
40 // 

// Programmer Change Date Change Description 



// - 

// AdiGavish 01/12/97 Initial version 

45 ' * 

import java.util.*; 

42 



SUBSTrrUTE SHEET (RULE 26) 



wo 99/27556 



PCT/US98/24963 



import Utii.*; 

import Util. Persistence. *; 

import Util.UNIRTypes.*; 

import Util.Structs.*; 

5 import Util. Log.*; 

import COM. objectspace. jgl . * ; 



//* 

public class FlowManager 

10 ( 

// Current Rule we are processing 
int m_RuleID ; 

// Pipe ISM variables 
15 boolean m_IsTargetPipe ^ false ; 

int m_TargetIS = 0 ; 

int m_TargetNode = 1 ; 
int m_Targe tGa there r *» 0; 

20 // Holds all Enhancments for a Rule. Alll elements are of type 

EnhanceOpNode . 

public EnhanceOpSList m_OpList = new EnhanceOpSList () ; 
public EnhanceOpSList m_OpTTOpList = new EnhanceOpSList () ; 

25 // All output parameters are added to this list, with their positions in 

the list 

// used to define the actual position of UNIRs in the Data Arguments 
collected by 

// the ISs of the flow. 
30 // After Output positions are defined, the input parameters are updated 

with 

// the new positions (So the Enhancement step in the Gatherer will know 
where to 

// get the input parameters of some enhancement function) 
35 // see allocateUNIROutputData method 

SList UNIRAllocation ; 

// Temporary Storage of instructions converted from Enhancements 
SList ra_TmpInst ructions ; 



40 

// HashTable For Flow Instruction Storage, access by RulelD Stores a 
complete set 

// of instructions for every Flow (=« Every Rule) 
Hashtable m_Instructions - new Hashtable { ) ; 

45 

// Offset to fix UNIR Indexes (Take FlowID, Step into account) 
// See PlaceHolders in Gatherer . EnhanceCompFlowStep 
final static int FLOW_OFFSET - 2; 

50 // Globol counter used in DFS Topology Sort 
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inz m TimeCtr - 0 ; 



25 



************************************** 



//************************ *****^ 

// Build All Flows 
5 // - Loop on all rules 

// - build an Instrucion vector for each Rule 

// - store set of instructions per Rule in m_Instruction3 

* 

public void compute Fl ows () 

10 ( 

Rules RuleList = CEM. instance {). getRules {) ; 
if (RuleList != null) 

{ 

// Loop on all Rules 

15 for (Enumeration El = RuleList .elements {) ; El.hasMoreElements ( ) ; ) 

{ 

// Compute Flow for specific Rule (If Enhancement is 

Enabled) 

Rule CurrentRule = { (Rule) (El .nextElement ( ) ) ); 
20 if (( CurrentRule != null ) &6 (CurrentRule . getEnabled 0 



" true) ) 



{ 

int RulelD - CurrentRule, getRulelD 0 ; 
computeRuleFlows (RulelD) ; 



// Compute Flow for RulelD. At the end of this method, All 
Flowlnstructions for RuleXD will be 

// generated and saved as an SList in a Hash Table, accessed by RulelD 

// 

35 // parameters 

// RulelD - ID of rule to build the instruction set for 

— * — ******************** **** 

public void computeRuleFlows (int RulelD) 
{ 

40 Log.instance().writeLog(new LogDebug ( "Compute Flow for Rule "^RulelD) ) ; 

m RulelD = RulelD ; 



try 

45 //I. Build Initial EnhanceOpNode set for RulelD 

buildGUONSByRule (RulelD) ; 
if ( m_OpList.size () > 0) 
( 

// 2. Create Enhancement String Descriptions 
50 buildOpDescriptions ( ) ; 
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10 



15 



20 



25 



30 



35 



40 



to GUONS 



Non End GUON. 



y/ 3. Convert All Opnums in Enhancement Input Params 
buildTranslatedOpKeyInt ) ; 

// 4. Reduce Duplicate GUONS (with same Description) 

reduceSameDescriptionOps ( ) ; 

// 5a. Generate OpKeysOut Information 

buildOpKeysOutt); 
// 5b. Reduce GUONS that are NOT INPUT to any other 

// Dependent on 5a. 

reduceErrorGuons t ) ; 

// 6a. Perform Topology Sorting 
doTopolgySort ( ) ; 

// 6b. Perform "Node Coupling" Optimizations 
doNodeCoupling ( ) ; 

// 7. Allocate UNIR Data Structure Key Index 

allocateUNIROutputData ( ) ; 

// 8. For every input parameter, match the appropriate 



Index fronm step 1 



propogatelndexToInput { ) ; 



I 



DB, not pipe) 



// 9. Create IntructionSet 
buildlnstructionSet 0 ; 
// 10. Save IntructionSet in Hash Table with RulelD as Key 
m_Instructions.put (new Integer tRulelD) , m_TinpIn3tructions ) ; 
// 11. Build Fieldlndex Vector & send to Merger (if Target is 

if { !m_lsTargetPipe) 



buildFieldlndexO i 



) 



Log. instance ( ) . writeLog ("FlowManager . computeRuleFlows" , 
LogEvent . LOG_DEBUG, 

"Done Compute Flow for Rule "+RuleID ) ; 

) 

catch (Exception E) 
{ 

Debug. writeStackTraceC'FlowManager.computeRuleFlows", E) j 



// Build an initial set of EnhanceOpNodes representing all Enhancements 



per some 

45 // rule. Set some additional Info on every EnhanceOpNode, such as 

GathererlD and 

// m_IsLast Flag. 

// !!!! IT IS ASSUMED THAT Enhancements (From PERSISTENCE) is loaded 
sorted by 
50 // Field/OpNum ! ! ! 
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//** ********** ****************************** 

protected void buildGUONSByRule ( int RulelD ) 

{ 

m_IsTargetPipe = false ; 
5 m_TargetNode - 1 

iti_TargetGatherer - 0 
m_TargetIS - 0 

m OpList = new EnhanceOpSList (); 
10 Nodes NodesList «= CEM. instance (). getNodes () ; 

ISs ISsList = CEM. instance () .getISs 0 ; 

// Loop on All Enhancements. For Every Enhancement that matches the 

current 

15 . // Rule, create an EnhanceOpNode object and add it to the OpArray. After 

// loop is done. Sort the OpArray. 
// OpArray will sort on ? 

Enhancements EnhancementList - CEM, instance (). getEnhancements () ; 
Array OpArray = new Array (); 
20 if (EnhancementList !-= null) 

I 

for (Enumeration E ^ EnhancementList . elements () ; 

E.hasMoreElements ( ) ; ) 

{ 

25 Enhancement Enhancement! tern ^ ( 

(Enhancement ) (E . nextElement ( ) ) ) ; 

if (Enhancementltem.getRulelDO ==» RulelD) 

{ 

/ /printDiagnosticsPre (Enhancement ) ; 
30 EnhanceOpNode EnhancementNode = new EnhanceOpNode { 

Enhancement! tem ); 

//printDiagnosticsPost (EnhancementNode) ; 
OpArray. add ( EnhancementNode ); 

) 

35 1 
) 

Sorting. sort ( OpArray ); 

// build m_OpList from OpArray 
40 if (OpArray. size 0 > 0) 

{ 

String LastField = 

Rules RuleList - CEM. instance (). getRules () ; 
Rule CurRule - RuleList .getRuleByRulelD(RulelD) ; 
45 // If Rule Not Enabled, m^OpList will be empty 

if ( (CurRule != null) && (CurRule. getEnabled () ) ) 
( 

// Get the AISM ID of this Flow 
int ISID = CurRule. getTriggerlDO ; 
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variables 



// Set Target Pipe Boolean. Target Node and other Pipe 

m_TargetIS « CurRule. getTargetID t ) ; 

if (m_TargetIS > 0) 

I 

m_IsTargetPipe » true ; 

IS TargetIS « ISsList.getISBylSlD( 



m TargetIS ) ; 



if (TargetIS !- null) 
10 ( 

nv_TargetGatherer « 

TargetIS. getGathererlDO ; 

Node N = 

NodesList . getNodeByTypelD {Util . Comm. Node . NODE_TYPE_GATHERER, m_TargetGatherer) ; 
15 m_TargetNode = N . getNodelD ( ) ; 

1 

) 

// Get AISM Information () 
20 IS 1 - ISsList.getISByISID( ISID ); 

if (I != null) 
( 

int ctr = 0 ; 

// Build First entry into m_0pLi3t from thr 

25 Rule Header 

int GathererlD = I , getGathererlD < ) ; 
int ISMID = I.getlSMIDO ; 
Node N = 

NodesList , getNodeByTypelD (Util . Comm. Node . NODE_TyPE_GATHERER, GathererlD) ; 
30 int NodelD = N. getNodelD { ) ; 

// Add GUON 0 witn data from the Rule Header 

EnhanceOpNode OpZero = new EnhanceOpNode 
(RulelD, (short)O, ISID, 0, null, null) ; 

35 OpZero. setGathererlD (GathererlD) ; 

OpZero. setNodelD(NodelD) ; 
OpZero. setlSMID (ISMID) ; 

// setting GUON to the original index will garuentee 

unique value. 

40 OpZero. setGUON (ctr) ; 

OpZero. 3etLastFlag(false) ; 
m_OpList.add ( OpZero ); 
ctr++; 

45 // Loop on OpArray, build the rest of m^OpList 

EnhanceOpNode PriorEnhanceOp « null ; 
for (Enumeration E - OpArray . elements () ; 

E.hasMoreElements ( ) ; ) 
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EnhanceOpNode CurrentEnhancement = ( 

(EnhanceOpNode) { E . nextEiement ( ) ) ); 

// Check if it belongs to The Rule 
if ( ( CurrentEnhancement != null ) &t 
5 (CurrentEnhancement.getRulelDO RulelD ) ) 

{ 

ctr++; 

// set aux data, add to list 
I = ISsList,getISByISID{ 



10 



15 



20 



25 



30 



40 



45 



50 



CurrentEnhancement . getISID( ) ); 

if (I!=null) 
( 

GathererlD - I .getGathererlD ( ) ; 
ISMID = r.getlSMIDO ; 
N « 

NodesList . getNodeByTypelD (Util . Comm. Node . NODE_TYPE_GATHERER, GathererlD) ; 

NodelD = N.getNodelDO ; 



CurrentEnhancement . setGathererlD (GathererlD) ; 

CurrentEnhancement . setNodelD (NodelD) ; 

CurrentEnhancement . setlSMID ( ISMID) ; 

// set GUON to the original index will garuentee 

unique value. 

CurrentEnhancement . setGUON (ctr ) ; 

CurrentEnhancement. setLastFlag (false) ; 

// Chec)c if Field changed. If 

Field has changed, this means that 

// the previous EnhanceOpNode 

35 was the last for that field. 

String CurrentField =» 

CurrentEnhancement. get FieldlDO ; 

if ( ( 

•CurrentField. equals (LastFieid) ) && (PriorEnhanceOp !• null) ) 

{ 

// Field Has Changed, prior 

Op was last for a Field 

PriorEnhanceOp. setLastFlag (true) ; 

// Set Target Field of 

previous EnhanceOpNode 



PriorEnhanceOp. addOut Fields (LastFieid) ; 
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// Save for Last Step Per Field 

PriorEnhanceOp - 

LastField « CurrentField ; 



10 



// Add To List 
in_opList .add ( 



CurrentEnhancement ) ; 



15 



20 



Log . instance { ) . wri teLog ( "FlowManager . buildGUONSByRule" , 
LogEvent.LOG_DEBUG, CurrentEnhancement . toString ( ) ); 

1 

else 
{ 

Log. instance () , writeLog (new 
LogError ("buildGUOKSByRule: No IS found for "+CurrentEnhancement , getlSID { ) )); 



25 



30 



changed. 



// End Of Loop Logic. Same as if Field has 

if {PriorEnhanceOp != null) 
( 

PriorEnhanceOp. setLastFlag (true) ; 
PriorEnhanceOp. addOutFields (LastField) ; 

) 



35 // ' • •"♦*•* 

// Print Diagnostics on the passed Enhancement. 
// Currently Not Used. 

//♦*♦♦♦«♦♦♦♦«♦***♦******■*♦*♦**♦**♦*■*******♦*****♦ 

protected void printDiagnosticsPre (Enhancement Enhancementltem) 

40 I 

try 
( 

byte(] buf - Enhancementltem. getOpKeyIn () ; 

String InputList - ; 
45 Arguments a = new Arguments ( buf ) ; 

for (Enumeration EK - a . elements t ) ; EK. hasMoreElements () ; ) 
( 

short value = 
( (UNIRShort) EK.nextElement () ) . getShortValue ( ) ; 
50 InputList +- Short . toString (value) 
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5 



10 



20 



25 



value 

( (ONIRShort) EK. nextElement () ) . getShortValue { ) ; 

InputList += Short. tostring (value) 

1 

InputList += "] 

Log. instance ( ) .writeLog ( "FlowManager . buildGUONSByRule" 
LogEvent . LOG_DEBUG, "Persistenceltem: 

"+InputList) ; 

} 

catch (Exception e) 

{ 

) 

) 

15 

// Print Diagnostics on the passed EnhanceOpNode . 
// Currently Not Used. 

protected void printDiagnosticsPost (EnhanceOpNode 

EnhancementNode) 
{ 

try 
( 

byte I] buf = EnhancementNode. getOpKeyIn () ; 
String InputList = ; 
Arguments a - new Arguments ( buf ) ; 

for (Enumeration EK - a . elements () ; EK. hasMoreElements ( ) ; ) 
( 

short value = 
( (UNIRShort) EK. nextElement 0 ) . getShortValue ( ) ; 

InputList += Short. toString(value) 
value 

( (UNIRShort) EK. nextElement () ) . getShortValue ( ) ; 

InputList += Short. toString(value) "; 
} 

InputList += *']"; 

Log. instance () .writeLog ("FlowManager. buildGUONSByRule", 
LogEvent. L<3G_DEBUG, "Struct 1: 

40 "+InputList) ; 

InputList « "[" ; 
for (Enumeration EK - 
EnhancementNode. getParsedOpKeyInO . elements () ; EK. hasMoreElements t ) ; ) 
{ 

int value = ( (Integer I EK, nextElement { ) j.intValueO; 
InputList +- Integer. toString (value) "; 
value - { (Integer) EK. nextElement ( ) ).intValue(); 

InputList += Integer. toString (value) +", "; 



30 



35 



45 



50 
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) 

inputList +- ") 

Log. instance () . writeLog ("FlowManager.buildGUONSByRule" 
LogEvent.LOG_DEBUG, "Struct 2: 

'• + InputList) ; 



catch (Exception e) 

10 ( 
) 



//*»*♦***■**♦♦*******#************♦*♦♦****«*♦#***♦***«**♦**♦*♦♦**♦♦**♦♦♦**■* 

15 // ABSTRACT 

// Convert the m_OpList to an Instruction Set the Gatherer Can 
Understand 

// (a set of UNIRInstructionsI 
// 

20 // Description 

// Translate m_OpList to sets of Enhancement Instructions. Divide the 
Enhancements 

// by Different Gatherer sequences, wrap each segment with a Receive 
Instruction 
25 // and a Send Instruction. 

//*******-t**************««#**««******************************* ************ 

y/***«**«****»*****«**********»********************* 

// Helper method to add an instruction of type Send 
2Q y/************* ***♦♦♦***♦*♦ *♦*♦♦*♦****♦*♦***♦*♦♦»*** 

void AddSendStep(int StepCtr, int NodelD, int ISID, int 

ISMID, int GathererlD) 

{ 

UNIRInstruction u » new UNIRInstruction (m^RulelD, 

35 

StepCtr, 

UNIRInstruction . INSTRUCTION_SEND, 

NodelD, 

40 0, ISID, ISMID, 

null, null, 

GathererlD ); 

Log. instance 0 .writeLog ("FlowManager.buildlnstructionSet" 

LogEvent . LOG_DEBUG, 

45 "Adding Instruction "+u) ; 

m TmpInstructions.pushBack (u) ; 



50 // • • 
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// Helper mechod to add an receive of type Receive 

void AddReceiveStep (int StepCtr, int NodelD, int ISID, int 

ISMID, Lr.z GathererlD) 

5 ( 

UNIRInstruction u = new UNIRInstruction (m RulelD, 



10 



20 



StepCtr, 

UNIRInstruction. INSTRUCTION RECEIVE, 



NodelD, 

0, ISID, ISMID, 
null, null, 

GathereriD ) ; 

1 5 Log . instance ( ) .writeLog ( "FlowManager .buildlnstructionSet" , 

LogEvent . LOG_DEBUG, 

"Adding Instruction "+u); 
m_TinpInstructions .pushBack f u) ; 



// Helper method to add a receive of type Enhance 

25 void AddEnhanceStep (int StepCtr, int NodelD, int ISID, int 

ISMID, int GathererlD, 

int FunctionID, byte [ ] inParam, byte[] 

outParam) 

( 

30 UNIRInstruction u ^ new UNIRInstruction (m RulelD, 

StepCtr, 

UNI RI ns t r uc t i on . I NSTRUCTI ON_ENHANCE , 

35 NodelD, 

FunctionID, ISID, 

ISMID, 

inParam, outParam, GathererlD) ; 
40 Log. instance () .writeLog{ "FlowManager .buildlnstructionSet", 

LogEvent . LOG_DEBUG, 

"Adding Instruction "+u); 
m_TmpI ns t rue t i ons . push Back (u) ; 

45 , 

// Helper method to add an receive of type Pipe Give 
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void AddGiveStepdnt StepCtr, int NodelD, int ISID, int 

ISMID, int GathererlD, 

int FunctioniD, byte!) inParam, byte[l 

outParam) 

5 f 

UNIRInstruction u = new UNIRInstruction (m_RuleID, 
StepCtr, 

10 UNIRInstruction. INSTRUCTION_GIVE, 

NodelD, 

FunctioniD, ISID, 

ISMID, 

15 inParara, outParam, GathererlD) ; 

Log . instance ( ) . writeLog ( "FlowManager . buildlnstructionSet" , 

LogEvent . LOG_DEBUG, 

"Adding Instruction "+u) ; 
m_TmpInstruction3 .pushBack (u) ; 



20 



1 

//**♦**** 



25 protected void buildlnstructionSet ( ) 

( 

Log. instance () .writeLog ( "FlowManager .buildlnstructionSet", 
LogEvent . LOG_DEBUG, 

"Build Instruction Set for Rule 

30 "+in_RuleID) ; 

EnhanceOpNode PriorOp « null ; 
int PriorNodelD = -1; 
in_TmpInst ructions - new SList (); 
int StepCtr - 0; 

35 for (SListlterator I = m_OpList .begin () ; (II.atEndU); I.advanceO) 

{ 

EnhanceOpNode Opl = (EnhanceOpNode) I .get () ; 

if ( lOpl.getLastFlagO ) 

( 

40 if (Opl.getNodelDO !- PriorNodelD) 

t 

// Add Send instruction to close prior node 

sequence 

if (PriorNodelD !» -1) 

45 ( 

AddSendStep (StepCtr, 

Opl.getNodelDO, Opl .getISID( ) , 

Opl.getlSMlDO , 

PriorOp. getGathererlDO ) ; 
50 StepCtr++; 
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sequence 

Opl.getlSIDO , 

Opl . gecGathererlD ( ) ) ; 



10 



// Add Recieve Instruction to start current node 
AddReceiveStep(StepCtr, Opl. getNodelD ( ) , 

Opl .getlSMIDO , 

Stepctr++; 
PriorNodelD - Opl . getNodelD ( } ; 



) 



15 



20 



25 



PriorOp = Opl ; 
// Add Enhancement Step 

AddEnhanceStep (StepCtr, Opl . getNodelD ( ) , 

Opl.getlSXDO, Opl. getlSMIDO , 

Opl .getGathererlDO , 

Opl.getFunctionlDO , 

Opl . getOpKeylnAsArray ( ) , Opl . getOpKeyOutAsArray ( ) ) ; 
StepCtr++; 

I 

// The Last Step, Add Send Instruction to CEM 

// Check globol Pipe flag. If this Flow Target is some Pipe ISM, 
// Set the Instructione Type to INSTRUCTION_GIVE and set correct Node 
if (PriorOp !» null) 

{ 

if (m_isTargetPipe) 
{ 

//if target is in a different node, add a send and recieve 
if (m_TargetNode !- PriorOp. getNodelDO ) 
t 

AddSendStep (StepCtr, m_TargetNode, 0, 0, 

PriorOp. getGathererlDO ) ? 

StepCtr++; 
AddReceiveStep (StepCtr, 0, 0, 0, 
m_TargetGatherer> ; 

stepctr++; 

) 

// adding the final Give instruction. Dont forget Binding 

40 

Information 

bytet] bindinglnfo = 

buildPlSMBindinglnformationO ; 

AddGiveStep (StepCtr, in^TargetNode, m_TargetIS, 0, 
m_TargetGatherer, 0, 

45 bindinglnfo, null); 

) 

else 

( 

// Send Data to CEM 



30 



35 
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5 



AddSendStep(StepCtr, Util .Comm. Node. NODE_TYPE_CEM, 
0, 0, PriorOp.getGathererlDO ) ; 
I 

ScepCtr++; 

1 

) 

//* * * 

// doTopoigySort ( ) 

10 // m_0pLi3t can be seen as a Directed Acyclic Graph (DAG), and an 

algorithm 

// {Introduction To Algorithms, Chapter 23) to sort the graph is applied. 

The 

// result of this procedure is a list where the order of operations is 

15 correct, 

// meaning that all enhancments whose ouput is used as input happen 
before the 

// enhancments that use them. 

20 

protected void visitDFS (EnhanceOpNode Op) 
{ 

Op. setColor (EnhanceOpNode. GRAY) ; 
Op . s e t DPS Di s cove rT ime ( m_TimeC t r ) ; 
25 ra TimeCtr++; 

// For Each Adjacent Vertex (All Output GUONS) 
for (Enumeration AdjVert - Op. getOutputGUONs ( ) ; 
AdjVert.hasMoreElements ( ) ; ) 

{ 

30 int OutGuon « 

( (Integer) AdjVert. nextElement 0 ) . intValueO ; 

EnhanceOpNode OutOp « m_OpList . findGuon (OutGuon) ; 
// Explore Edges Each (Guon, OutGuon) pair is an 

edge 

35 if ( ( OutOp != null) && (OutOp.getColor () 

EnhanceOpNode. WHITE) ) 

{ 

VisitDFS (OutOp) ; 

OutOp. setPredecessor (Op) ; 

40 ) 

) 

Op. setColor ( EnhanceOpNode . BLACK) ; 

Op.setDFSFinishTime (m_TimeCtr) ; 
m TimeCtr++; 



45 



50 



m_OpTmpList.pushFront (Op) ; 
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protected void doTopolgySort ( ) 

// Create Temprary List to Store Ordered Ops. 
in_OpTmpList - new EnhanceOpSList (); 

5 

m_TimeCtr = 0 ; 

// For each vertex 
for (int i=0;i<m_OpList.si2e( ) 
{ 

EnhanceOpNode Opl = (Enhance0pNode)m_0pLi3t. at (i) ; 
// if not used in DFS yet (Color White) 
if { Opl.getColor 0 =- EnhanceOpNode. WHITE) 
I 

visitors ( Opl ); 

1 

} 

// Temporary List is now the correct one, move it to normal list 
m_OpList - new EnhanceOpSList { m_OpTmpList ); 
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// doNodeCouplingO 

// Node Coupling attempts to move enhancments that share the same 
gatherer closer 

// in sequence, as a way to reduce traffic between gatherers. This is 
done without 

// damaging the basic order of the enhancements established earlier in 

the 

// Topology Sort. 

// 

// Find if inserting Op at Pos will cause sort order 

conflict 

protected boolean noHarmToSort (EnhanceOpSList OpList, int 

pos, EnhanceOpNode Op) 

I 

for (int i=pos; i<OpList .size {) ; i++) 
{ 

EnhanceOpNode OpToCompare = 

(EnhanceOpNode}OpList .at (i) ; 

// Check if Op has input that uses Output 

of OpToCompare 

// Loop on all inputs of Op, see if the Guon value 

matches OpToCompare. Guon 

for (Enumeration EK = Op. getlnlterator ( ) ; 

EK.hasMoreElements () ; ) 
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( 

(OpInputParam)EK. nextElement ( ) ; 
OpToCompare . getGUON { ) ) 



OpInputParam InParam •= 

if ( inParam. getGUON I ) 



10 



15 



20 



OpList 

EnhanceOpNode Op) 



25 



// No insertion Possible 
return false ; 

) 

) 

) 

// No Conflict Found, Insertion Allowed 
return true ; 

) 

// 

// find last position of first same node sequence in 
protected int f indSameNodePos (EnhanceOpSList OpList, 
{ 

int NodelD » Op.getNodelD ( ) ; 
boolean StartSeqFound - false ; 
int ctr = 0; 
int ResultVal » -1; 
for (SListlterator I = OpList .begin t ) ; ( ! I . atEnd E ) ) ; 



I .advance { ) ) 



30 (EnhanceOpNode) I. get {) ; 



35 



EnhanceOpNode OpToCompare =• 

if (NodelD OpToCompare. getNodeID( ) ) 
I 

StartSeqFound = true ; 

} 

else 
i 

if { StartSeqFound ) 
{ 



40 



ResultVal « ctr ; 

brea)c; // get out of loop, we found 



what weere looJcing for 



45 



ctr++; 



return ResultVal ; 



50 



57 



SUBSTTTUTE SHEET (RULE 2B) 



wo 99/27556 



PCT/US98/24963 



protected void doNodeCoupling ( ) 
{ 

// Create Temprary List to Store Ordered Ops. 
m_OpTinpList « new EnhanceOpSList (); 



10 



15 



20 



25 



for (SListlterator I = rn_OpList. begin () ; ( ! I ,atEnd( ) ) ; I . advance {) ) 
{ 

EnhanceOpNode Dpi « (EnhanceOpNode) I . get ( ) ; 
// Add Opl to the Temporary List, either at the end (No Node 
Optimization Possible) 

//or Insert in the middle (Node Optimization, Couple Nodes) 
int nl « f indSameNodePos {m_OpTmpList, Opl); 
if (nl == -1) 
( 

// No Node Optimizations possible, add to end 
ni_OpTinpList .pushBack (Dpi) ; 

} 

else 
{ 

if t noHarmToSort (m_OpTmpList, nl, Opl) ) 



together 



// Insertion OK, insert to group same node Ops 
m_OpTmpList .insert (nl, Opl); 



30 



else 
( 



cannot inset, add to end 



// Insertion would hurt the input->output order, 
m_OpTmpList.pushBack (Opl) ; 



35 



40 



45 
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// Temporary List is now the correct one, move it to normal list 
m_OpList =» new EnhanceOpSList ( m_OpTmpList ); 

} 



// Create an image of the Data to be produced by this Rule. This 
allocates ouput 

// positions for every Enhancement. These positions are used later to 
update the 

// input params. 



protected void allocateaNIROutputData () 
( 
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UNlRAllocation » new SListO; 

// For Each OP 
for (int i»-0; i<m_OpList .size ( ) ; 
i 

EnhanceOpNode Opl = (Enhance0pNode)in_OpLi3t . at (i ) ; 
if (Opl null) 



{ 



// For Each Output Parameter 

for (Enumeration EK = Opl . getOutputKeys ( ) ; 



10 EK.hasMoreElements () ; ) 

{ 

is key, 2nd is guon 
15 Integer (Opl. getGUONO ) ); 



20 



Integer Key - (Integer ) EK. nextEleraent () ; // first 

GuonKeyParam NewKey - new GuonKeyParam(Key, new 

if (NewKey! -null) 
{ 

UNlRAllocation . pushBack (NewKey) ; 

) 
1 



25 



45 



*♦*♦***♦★*★*** *******♦♦♦♦•***«*♦«♦***♦***♦**♦♦***♦****♦ ********** 



// propogatelndexToInput () 

// Based on the Unir Allocation, match every input parameter with the 
index in the 
30 // UNlRAllocation. 



»»»******♦♦***★* ♦***■***♦♦** ********************** ************* 



protected int f indlndexinAllocation { OpInputParam Keyin) 

35 { 

GuonKeyParara CurlnKey = KeyIn .getGuonKey ( ) ; 
for (int i=0;i<UNlRAllocation.size() ;i++) 
( 

GuonKeyParam KeylnAllocation - 

40 (GuonKeyParam) UNlRAllocation. at (i) ; 

if (CurlnKey. equals (KeylnAllocation) ) 
( 

return i ; 



) 



return -1 



50 
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protected void propogatelndexTolnput ( } 

i 

// For Each OP 

for (SListlterator I m_OpList. begin () ; ( ! I . atEnd{ ) ) ; I.advanceO) 

5 ( 

EnhanceOpNode Opl = (EnhanceOpNode) I . get { ) ; 
// For Each Input Parameter 

for (Enumeration EK «= Opl . getlnlteratcr ( ) ; EK. hasMoreElements t ) ; 



10 



15 



20 



25 



( 

OpInputParam inParam (OpInputParam) EK. nextElement () ; 

// Get index of pair in UNIRAllocation 

int n = findlndexinAllocation (InParam) ; 

if (n -= -1) 

( 

// TBD, Error 

) 

InParam. setlndex(n + FLOW_OFFSET ); 

) 

Log . ins tance ( ) . writeLog ( "FlowManager . propogatelndexTolnput" , 
LogEvent . LOG^DEBUG, 

"Propagated Input Op: " +Opl); 

1 
) 



// For every Enhancement 

// Build List of Enhancments that need the output of some enhancement 
30 as Input. 

// 

// This information is needed later to weed out Non productive 
enhancements and 

// to perform the Topological sort on m_0pLi3t 

35 



protected void buildOpKeysOut { ) 
( 

// Opl Loop : Loop on All Enhancements in m_OpList 
40 for (SListlterator I » m_0pLi3t. begin () ; ( ! I.atEndO ) ; I.advanceO) 

{ 

EnhanceOpNode Opl • (EnhanceOpNode) I .get (} ; 
// Op2 Loop : Loop on All Enhancements in m_OpList 
// Compare all Enhancments to Opl (Except itself) 
45 for (SListlterator J = m_OpList,begin() ; ( ! J. atEnd { ) ) ; 

J. advance ( ) ) 

( 

EnhanceOpNode 0p2 - (EnhanceOpNode) J. get () ; 
// No need to compare Op to itself 
if (Opl!-0p2) 
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i 

list of 
5 managed in Opl. 

EK. hasMoreElements ( ) ; ) 



// If Opl participates as input in Op2, add Op2 to 
// Enhancements that need Opl output. .This list is 
for (Enumeration EK - Op2 .getlnlterator 0 ; 



( 

OpInputPararo InParam 

1 0 (OpInputParam) EK . nextElement ( ) ; 



50 



if (InParam.getGUONO -= Opl .getGUON ( ) ) 
( 



Opl . addOutputParam (InParam. getKey ( ) , Op2 . getGUON () ) ; 

15 » 

) 

) 

) 

) 

20 ) 



// Reduce Duplicates. No need for duplication of process if another 
25 enhancement 

// already creates the needed Output. Keep one of the duplicates, delete 
the other. 

// Pass thru all input keys of all enhancments, replacing any reference 

to the 

30 // Deleted GUON with the Surviving GUON. 



protected void reduceSameDescriptionOps ( ) 
( 

35 for (int i=0;i<m_OpList.size();i++) 

{ 

EnhanceOpNode Opl = (EnhanceOpNode)m_^OpList .at (i) ; 
// Move from end to Current Pos because we might delete an object 
for (int j=m_OpList.size()-l/ j>i; j — ) 
40 i 

EnhanceOpNode Op2 « (EnhanceOpNode) m_OpList . at tj ) ; 

if ( Opl. getOescriptionO .equals ( Op2 . getDescription ( ) ) ) 

( 

45 Log . instance ( ) . writeLog ("FlowManager . reduceSameDescriptionOps" , 

LogEvent . LOG^DEBUG, 

"Reducing Description : 

Op2.getGaON()+":"+ 
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Op2 . getDescription ( ) ); 

// Merge outfields of deleted guon with surviving 

guon 

5 Opl.addOutFields (Op2.getOatFields() ); 

int newGUON = Opl .getGUON { ) ; 
int oldGUON = Op2.getGU0N() ; 
in_OpLis t . remove ( j ) ; 
// GUON Replacement Pass 
10 for (int k^O; k<m_OpList . size { } ; 

{ 

EnhanceOpNode Op3 = 

|EnhanceOpNode)m_OpList.at (k) ; 

Op3.SwapInputKeyGUON( OldGUON, newGUON) ; 

15 } 

// Mark for Garbage Collection 
Op2 " null ; 

) 

1 

20 ) 
1 

//***************«***»**♦*********»***************** ********************* 
******** 

25 // Reduce Error Guons, that do not produce an output needed as input by 

any other 

// guon. They can be identified if they are not "Last" and the output 
list is empty. 

^^**i»******»***************«********************************************* 

30 - 

protected void reduceErrorGuons ( ) 
{ 

if (m_OpList .sizeO > 0) 
( 

35 for (int i^m^OpList. size 0-1 ;i>=0;i—) 

{ 

EnhanceOpNode Opl = ( EnhanceOpNode )m_OpList .at (i) ; 
//If Not Last Guon per some field. . . 
if ( lOpl.getLastFlagO ) 

40 { 

// Check if any Outputs are defined 
Enumeration ChkOutput = 

Opl . getOutputGUONKeys { ) ; 

if ( ! ChkOutput. hasMoreElements ( ) ) 

45 ( 

Log. instance ( ) .writeLog ( "FlowManager. reduceErrorGuons", 

LogEvent . LOG_DEBUG, 

"Reducing Bad Enhancment 
:"+Opl.getGU0NO + ":"+0pl. getDescription 0 ) ; 
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//No Output Elements for this 

m_OpLi s t . remove ( i ) ; 

// Mark for Garbage Collection 

Opl = null ; 

1 



10 1 



15 



20 



25 



//* 



****** 



// Build Translated OpKeyIn for every Enhancment 

// 1!!! IT IS ASSUMED THAT Enhancements (From PERSISTENCE) are loaded 
sorted by 

// Field/Opnum ! ! ! 



30 



protected void buildTranslatedOpKeyin ( ) 

{ 

for {SListlterator I = m_OpList . begin t ) ; ( ! I . atEnd ( ) ) ; I.advanceO) 
{ 

EnhanceOpNode Op = (EnhanceOpNode) I . get ( ) ; 

if (Op !- null) 

( 

Op. translate0pKeyIn(m_0pLi3t) / 

Log . instance ( ) . writeLog ( "FlowManager . buildTranslatedOpKeyin" , 
LogEvent.LOG_DEBUG, Op . toString ( ) ); 
1 



) 



) 



35 



//* 



40 



45 
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// Build a Description for every Enhancment 

// !!!! IT IS ASSUMED THAT Enhancements (From PERSISTENCE) is loaded 
sorted by 

// Field/Opnum ! ! ! 



protected void buildOpDescriptions ( ) 

for (SListlterator I « m_0pLi3t. begin () ; (II.atEndO); I.advanceO) 
( 

EnhanceOpNode Op - (EnhanceOpNode) I . get () ; 

if (Op != null) 

{ 

String S =« getDescription ( Op ); 
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Log. instance {) . writeLog ("FlowManager .buildOpDescriptions", 
LogEvent . LOG_DEBUG, 

"Op Description 

"+0p.getFieldID()+":-+Op.getGU0N()+": " +S); 
} 

) 

} 



5 



10 //***************«■**********************♦****♦ 



15 
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***** 



// get Textual representation of the first EnhanceOpNode Input Key 



protected String getKeyText (EnhanceOpNode Op) 
{ 

String ResultVal = ; 
try 

{ 

if (Op != null) 
{ 

Arguments args » new Arguments ( Op . getOpKeyIn () ); 
int n »= 

( (UNIRShort) args. get <ArgKeys.KEy_KEy_ID) ) . getShortValue () ; 

ResultVal * Integer. toString(n) ; 

} 

1 

catch (Exception e) (} 
return ResultVal ; 

} 

//**^************if****^**ir**********i,***1,*1(*t***i,****ir***^^.imt^^,i,^,^^^^^^^^ 
******** 

// Build a Textual description of a regular EnhanceOpNode Op 
// 

// the methods "parseArgs" and "getDescription" are used in a recursive 

manner 

//-******** *****1,*■k•lr*****^t**1,^,*********^,**^^,^,^,^^,^^,^,^,^^^^,^^,^^^^^^^^^^^^^^^^_^ 
******** 

protected String parseArgs (EnhanceOpNode Op) 
( 

String s - ; 

try 

{ 

// Loop On All Op Key In 

Arguments a = new Arguments ( Op.getOpKeyInO ); 

for (Enumeration EK «- a. elements () ; EK .hasMoreElements ( ) ; ) 

{ 

// Add Description of Input Param OpNum 
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Short OpValue - ({UNIRShort) 

EK.nextEiementO ) . getShortvalue ( ) ; 

EahanccOpNode CurrentOp - m_OpList . findOp (OpValue, 

Op.gecFieldlDO ); 
5 if ( ! op. equals (CurrentOp) ) 

( 

s +« getDescription (CurrentOp) 

// Add Description of Input Param Key 

short KeyValue - ((UNIRShort) 

10 EK . nextElement ( ) ) . getshor tValue ( ) ; 

s +- integer. toString (KeyValue); • 

// If More Param, delimit by comma 

if ( EK.hasMoreElements 0 ) 

( 



15 



20 



35 



45 



) 

) 

else 
( 

Log. instanced. writeLogC'FlowManager.parseArgs-, LogEvent . LOG_ERR0R. 
"Corruption Detected in Data (Illegal Recursion)"); 



throw ( new Exception () ) ; 
) 

25 i 
1 

catch (Exception EA) 
{ 

s " ; 

30 ) 

return s ; 



) 



// Build a Textual description of the EnhanceOpNode Op 
// the methods ''parseArgs" and "getDescription" are used in a recursive 

40 //- * * **** 



protected String getOescription (EnhanceOpNode Op) 
( 

String s = op.getDescription( ) ; 

// If NO description was built yet, build it and save for next 



time 



if (s— null) 
( 

// if last Step for some field, just parse 
50 if (Op.getLastFlagO ) 
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10 



15 
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25 



35 



40 



) 

else 



45 



50 



Parameters . 
+ " ( " ; 



s = parseArgs (Op) ; 

if (Op.getOpNumO «= 0) 
{ 

// First Opy has no function 

s = Op.getlSIDO + '* . " + getKeyText (Op) ; 

} 

else 
( 

// Function, Must show Func ID + Input 

5 - Op.getlSIDO + + Op. getFunctionID (} 



s +- parseArgs (Op) ; 



} 



// Save for next time 

Op.3etDescription(s) ; 
// 



1 

return s ; 
1 



//************ ******-k****-k **-k1r******ir*******^lr**it ******* If**** ^*-tiri,tic-^*-Mit it 



// Scan All Rules, Loop On All Instructions, send matching instructions 
to Gatherer 

30 //****** ^r***** ************************* tt**************** 



**ti*l,*'tr*****1^ 



******* 



public void setlnstructionsByGatherer ( int GathererlD, GathererController GC 



Rules RuleList - CEM* instance (). getRules () ; 

if (RuleList !- null) 

{ 

// For Each Rule 

for (Enumeration El «- RuleList . elements () ; El .hasMoreElements () / ) 



{ 



// Build Flow for specific Rule 
Rule CurrentRule - ( (Rule) (El .nextElement ( ) ) ); 
if (( CurrentRule != null ) && (CurrentRule . getEnabled { ) 



true) ) 



RulelD, GC ) ; 



{ 



int RulelD = CurrentRule. getRuleID( ) ; 

setlnstructionsByRuleByGatherer ( GathererlD, 
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1 

I 



// Send All Instructions per Rule/ per Gatherer to the Gatherer 
// Thru the GathererController 

// « 



10 synchronized public void setlnstructionsByRuleByGatherer ( int GathererlD, 

int RulelD, GathererController GC ) 
( 

SList Tmplnatructions = (SList)m_Instructions. get (new 
Integer (RulelD) ) ; 

15 Vector V " new VectorO; // Hold UKIRInstruction belonging to 

some Gatherer 

// Loop on All instructions of a Rule, Add Gatherer Matches to v, 

Send V to GC 

for (Enumeration EOps - Tmplnstructions . elements () ; 
20 EOps .hasMoreElements ( ) ; ) 

{ 

UNIRInstruction Op = (UNIRInstruction) EOps . nextElement ( ) ; 

if (Op.getGathererlDO — GathererlD) 

( 

25 V. addElement top) ; 

} 
} 

try 
( 

30 

Log. instance 0 . writeLog { "FlowManager . setlnstructionsByRuleByGatherer", 
LogEvent.LOG_DEBUG, "Disable Flow ••+RuleID+ " on " + GathererlD); 
GC.disableFlowtRulelD) ; 
if (v.sizeO > 0) 
35 { 

Log. instance ( ) . writeLog ( "FlowManager . secinstructionsByRuleByGatherer", 
LogEvent. LOG_DEBUG, "Upload Flow "+RuleID+ " on " + GathererlD); 

GC.sendFlowData(RuleID, new UNIRInstruction (v) ); 

40 

Log . instance { ) . writeLog ( "FlowManager . setlnstructionsByRuleByGatherer", 
LogEvent.LOG_DEBUG, "Enable Flow "+RuleID+ " on " + GathererlD); 

GC.enableFlow(RulelD) ; 

) 

45 ) 

catch (Exception e) 

( 

» 

) 



50 
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/ / Pack the Binding information between current Flow to the input 
// parameters of the target Pipe ISM. 

// This information is added to the Give instruction and sent to the 
// Gatherer where it is used to pass data from the output UWIR of 
// the current flow to the input parameters of the target flow. 
// RETURNS 

//a byte array containing Binding information in the following format: 
// pairs of shorts made of the index of the data in the output UNIR, 



followed 



// by the key value of the target input parameter. 



byte [ ] buildPISMBindingInf ormation ( ) 



{ 



try 
{ 

Arguments args = new Arguments (); 
Vector V = new Vector {); 
// Loop on All Enhancements 
for (SList Iterator I = m_OpList. begin () ; ( ! I.atEndO ) , 



I -advance ( ) ) 



Output Unir 
Output Unir 
Input Parameters 

flow data and put 



key 



EnhanceOpNode Op - (EnhanceOpNode) I . get ( ) ; 
if (Op !« null) 
( 

int Index = 0/ // Position of data in 
short Key = 0; // Key ID of data in 
int inKey = 0; // Key ID of data in 

// the binding process will 

// •'take the UNIR in the Index position from the 

// in the PISM input parameter in inKey" 

// One to many relation: One input to Many output 
// DEFINE INPUT : Get Index & key of first input 

Enumeration EK « Op. getlnlterator ( ) ; 

if ( EK.hasMoreElements t) ) 

{ 

OpinputParam InParam = 



(OpInputParam) EK . nextElement ( ) ; 



Index = InParam. m_Keylndex ; 
Key = (short) InParam. m_KeyID; 
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// DEFINE OUTPUT (S) Loop on all Out Values 
for {Enumeration EFlds " 
Op . getOutFields ( ) . elements ( ) ; EFlds . hasMoreElements ( ) ; ) 

( 

5 string FieldID «» 

(String) EFlds .nextEleroent () ; 

Log . instance ( ) . writeLog { "FlowManager .buildPISMBindinglnformation" , 
LogEvent . LOG_INFO, 

10 **Got Pipe 

Binding: "+ FieldID +" ; index +" ; "+ Key) ; 

// in PISM, FieldID is a String 

Representation of the KeylD 

// defined as string for 
15 compatabiliy with Fields (see buildFieldlndex) 

inKey « Integer. valueOf ( FieldID 

) .intValueO ; 



20 



// Add to Arguments; 

args.put (ArgKey3.ARGKEY_ENHANCEMENT_0P_NUM, new UNIRShort ( {short ) Index) ) j 

args.put (ArgKeys.KEY_KEy_ID, new 

UNIRShort ( (short) inKey) ) ; 

25 ) 

) 

) 

return args . toByteArray () ; 

1 

30 catch (Exception e) 

( 

Log . instance ( ) . writeLog ( "FlowManager . buildPISMBindinglnformation" , 
LogEvent . LOG_ERROR, 

35 "Error in 

Binding Info, "+e) ; 

Debug. writeStac)cTrace ("FlowManager. buildPISMBindinglnformation", e) ; 



40 



50 



return null ; 
) 



45 //. 



// Builds a vector of all DB fields that participate in a specific Flow. 
// (The current flow, in m_OpList) 

// This list is built of FieldlndexStruct elements and sent to the 

Merger . 
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// The Merger uses this information in processing incoming UNiRs from 

this 

// flow. 

// The vector is a cross reference between the DB FieldID and the 
position 

// the data to be put in the field from the incoming UNIR for this flow. 



void buildFieldlndex { ) 
{ 

Vector V - new Vector (); 

// Loop on All Enhancements 
for (SListlterator I » m_OpList.begin(} ; ( ! I . atEnd ( ) ) ; I.advanceO) 
{ 

15 EnhanceOpNode Op = (EnhanceOpNode) I . get ( ) ; 

if (Op != null) 
{ 

int Index » 0; 
short Key = 0; 
Enumeration EK = Op. getlnlterator t ) ; 
// Get Index & key of first input Jcey 
if ( EK.hasMoreElements ( ) ) 
{ 

OpInputParam inParam = 
25 (OpInputParam) EK. nextElement ( ) ; 

Index = InParam. ra_KeyIndex ; 
Key - (short) InParam. m_KeyID; 

} 

30 // Loop on all Fields Out, add all fields in list to 

vector with 

// Index & Icet stored earlier. 

for (Enumeration EFlds = 
Op . getOutFields ( ) . elements ( ) ; EFlds . hasMoreElements ( ) ; ) 

35 ( 



( String ) EFlds . nextElement ( } ; 
Index, Key)); 



String FieldID = 

V. addElement (new FieldlndexStruct (FieldID, 



) 
1 

} 

if (v.sizeO > 0) 
i 

45 // Call Merger 

Merger m = CEM. instance () .getMerger () ; 
Log. instance () . writeLog (new LogDebug ( "Vector : \n"+v) ) ; 
ra. addRule (m_RuleID, v) ; 

) 

else 
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// Call Merger 

Merger m = CEM. instance (). getMerger () ; 
Log. instance n .writeLog (new LogDebug ( "Deleting Rule'*+m_RuleID) ) ; 
m.deleteRule(ra_RuleID) ; 



10 



// Get Ail Enhancraents with matching FieldlD 
// Return Vector of afffected Rules 
// **** 



15 public Vector getRulesWithField (String FieidID) 

( 

Log . instance { ) . writeLog ( " FlowManager . getRulesWi thRuleField" , 
LogEvent.LOG_DEBUG, "Get Enhancements with Field "+FieldID) ; 
Vector ResultVal = new Vector (); 
20 OrderedSet Af f ectedRules « new OrderedSet ( false) ; 

Vector ToDel =» new Vector (J; 
Enhancements EnhancementList = CEM. instance (). getEnhancements 0 ; 
for (Enumeration E - EnhancementList. elements () ; 
E.hasMoreElements { ) ; ) 

25 1 

Enhancement CurrentEnhancement - ( 

(Enhancement! (E . nextElement ( ) ) ); 

if ( ( FieldlD. equals ( CurrentEnhancement. getFieldlDO ) ) ) 

i 

30 Af f ectedRules. add ( new Integer ( 

CurrentEnhancement. getRulelDO ) ); 



35 // Set Result Vai 

for (Enumeration AR = Aff ectedRules . elements () ; 

AR.hasMoreElementsO ; ) 

( 

Integer RulelDObj - (integer) AR. nextElemenc () ; 
40 ResultVal. addElemenc(RulelDObj) ; // add Rule to Result Sec 

) 

return ResultVal ; 



45 //• 



// Delete All Enhancments with matching FieldlD, RulelD from List 
//*•• 



71 



SUBSTTTUTE SHEET (RULE 2B) 



wo 99/27556 



PCT/US98/24963 



public void deleteRulesWithField (Vector P.uieList. String FieidID) 



for fine i=0; KRuleList . size 0 ; H-+) 
5 ( 

int RulelD = 
( (Integer) (RuleList.elementAt (i) ) ) .intValue ( ) ; 

deleteRulesWithRuleField(RuleID, FieldID} ; 

} 

10 J 



* * * 

15 // Delete All Enhancments with matching RulelD, FieldID 

// Return Vector of afffected Rules 



20 



30 



40 



45 



50 



public Vector deleteRulesWithRuleField ( int RulelD, String FieldXD) 



Log . instance (> . writeLog ( "FlowManager . deleteRulesWithRuleField" 
LogEvent.LOG_DEBUG, "Delete Enhancements with Field "+FieldID) ; 
Vector ResultVal - new Vector {); 
25 OrderedSet Af f ectedRules = new OrderedSet (false) ; 

Vector ToDel ^ new Vector (); 
Enhancements EnhancementList -» CEM. instance U .getEnhancements () ; 
for (Enumeration E = EnhancementList .elements () ; 
E.hasMoreElements { ) ; ) 



Enhancement CurrentEnhancement = ( 
: Enhancement ) ( E. next Element {) ) ); 

if ( ( FieldID. equals ( CurrentEnhancement , getFieldID ( ) ) ; 
( (RulelD == CurrentEnhancement .gecRulelD ( ; • ; ) 
//( (RulelD == CurrentEnhancement .getRulelD I ) ) II (RulelD 



-= -1) ) ) 



ToDel . addElement (CurrencEnhancement) ; 

) 

1 

:or (int i=0; i<ToDel . size () ; i++) 

Enhancement CurrentEnhancement = (Enhancement ) TcDel . eleraentAt ( i ) ; 
Af f ectedRules. add { new Integer ( CurrentEnhancement . getRuieID( ) ) 



Log. instance ( ) . writeLog ("FlowManager .deleteRulesWithRuleField" , 
LogEvent .LOG_DEBUG, "Deleteing "+CurrentEnhancement ) ; 

try I CurrentEnhancement. delete (); } catch (Exception e) ( 1 

) 
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// set Result Val 

for (Enumeration AR « Af fectedRules . elements t 1 ; 
AR.hasMoreElementsl ) ; ) 
5 { 

Integer RulelDObj - ( integer) AR.nextElement {) ; 
ResultVal.addElemenc(RulelDObj) ; // add Rule to Result Set 

1 

return ResultVal ; 

10 1 



15 // deleteRuleEnhancements 
// 



35 



40 



50 



public void deleteRuleEnhancements { int RulelD) 

20 Vector ToDel = new Vector (); 

Enhancements EnhanceraentList « CEM. instance (). getEnhancements () ; 
for (Enumeration E = EtihancementList . elements () ; 
E.hasMoreElements ( J ; ) 

( 

25 Enhancement CurrentEnhancement « ( 

( Enhancement ) ( E . nextElement () ) ) ; 

if t CurrentEnhancement .gecRulelDO «» RulelD ) 

( 

ToDel .addElement (CurrentEnhancement) ; 

30 ) 
) 

for (int i=0; i<ToDel.si2e( 1 ; i++) 



Enhancement CurrentEnhancement = (Enhancement) TcDel .elementAt (i) ; 

try 

( 

CurrentEnhancement . delete {) ; 
) 

catch (Exception e) 

Log. instance () .writeLog (new Log Debug ( "Dele te Rule 
Enhancement Failed... "+el ) ; 



Debug.wriceStackTraceCTlowManager. deleteRuleEnhancements", ej ; 

45 1 
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40 



/ Delete All Enhancments with matching ISID 
// If All enhancements per rule are deleted, disable the Rule 
// If Trigger is Deleted, Delete Rule 
// Return Vector of afffected Rules 



public vector deleteRulesWithlS (int ISID) 

Log. instance (). writeLog (new LogDebug ( "Delete Enhancements for "+ISID) ) ; 
10 Vector ResultVal = new Vector (); 

OrderedSet Af f ectedRules « new OrderedSet { false) ; 

OrderedSet Af f ectedRuieFields = new OrderedSet ( false ) ; 

Vector ToDel ~ new Vector (); 

// Loop on all Rules 
15 Rules RuleList = CEM. instance (). getRules () ; 

for (Enumeration El = RuleList . elements () ; El , hasMoreElements ( ) ; ) 

i 

// Compare Trigger ID to the ISID being deleted 

Rule CurrentRule = ( (Rule) (El . nextEiement ( 1 ) 1; 
20 mt RuielD = CurrentRule. getRuleID( ) ; 

if (CurrentRule. getTriggerID( } ISID) 
{ 

// yes. found a match. Add to Affected List 

// and delete the whole Flow 
25 Aff ectedRules .add { new Integer ( RulelD ) ); 

ToDel . addElement (CurrentRule) ; 
deleteRuleEnhanceraents (RulelD) ; 

} 

I 

30 // Delete from Collection 

for (int i=0; KToDel . size { ) ; i++) 

Log . instance () .writeLog (new LogDebug ( "Delete Rule with Trigger 

"+isrr : ; 

35 Rule CurrentRule = (Rule) ToDel . eiementAt ( i) ; 

try ( CurrentRule. delete (); ) catch (Exception e){l 



// Loop on All Enhancements, find Rule/Feild pairs affected by IS 



Enhancements EnhancementList CEM, instance {). getEnhancements () ; 
for ( Enumeration E2 = EnhancementLis t . elements I) ; 
E2.has.MoreElements ( ) ; ) 

( 

45 Enhancement CurrentEnhancement = ( 

(Enhancement) {E2 . nextEiement () } ); 

if (CurrentEnhancement. getISID( ) == ISID) 
( 

Log. instance () .writeLog (new LogDebug ( "Adding Rule Field to 



50 Affected List 
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5 



10 



15 



20 



30 



35 



50 



CurrencEnhancement.gecRuielDl ) +" : "+ 

CurrencEnhancement . gecFieldlD ( ) ) ) ; 

AffectedRuleFields.adcKnew Pair (new Integer 
(CurrencEnhancement .getRulelDO ) , 

CurrentEnhancemenc.getFieldlDO ) ); 

) 

) 

for (Enumeracion E3 - Af fectedRuleFields . elements () ; 
E3.hasMoreElements() ; ) 

{ 

Pair CurrentPair = t (Pair ) (E3 . nexcElement ( )) ); 
// Delete All Enhancemnts for this Rule & FieldlD 

deleteRulesWithRuleField( ( ( Integer)CurrentPair. first) . intValueO , 
(StringKurrentPair. second) ; 

f ectedRuies . add( ( Integer ) CurrentPair . first ); 

1 

// Set Result Val 

for (Enumeration AR = Af fectedRules . elements () ; 
AR, hasMoreElements 0 ; ) 

1 

Integer RulelDObj « (Integer) AR. nextElement () ; 
ResultVal.addElement (RulelDObj ) ; // add Rule to Result Set 

) 

// Return Affected Rules 
return ResultVal ; 



// Delete from the given Rule all the Fields that have Enhancements using 

// at least 1 from the given set of Trigger Input Keys . 

// 



40 - 

public OrderedSet deleteRuleFieldsWi thTriggerKeys (int R'-leld, Vector 
TriggerKeys ) 
i 

Log. instance I) . writeLog(new LogDebug 
45 CMeleteRuleFieldsWithTriggerKeys '*+"RuleId-" + Ruleld+ 

TriggerKeys«""+ TriggerKeys)); 

int OpNum - 0; 

OrderedSet AffectedRule - new OrderedSet ( false) ; 
OrderedSet A£f ectedFields » new OrderedSet (false) ; 
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10 



Lf ( TriggerKeys— null II TriggerKeys . size { ) ==0) 
return null; 

Log. instance () .wriceLog (new LogDebug ("Add Rule to Affected List "+ 

RuleldJ ) ; 

Af f ectedRule . add (new Integer ( Ruleld) } ; 
//Get all Enhancements 

Enhancements EnhancernentList = CEM. instance (). getEnhancemencs () ; 
for (Enumeration E - EnhancernentList . elements () ; E. hasMoreElements () ; ) 
{ 

Enhancement CurrentEnhancement « ( (Enhancement) {E.nexcElement () ) ); 

if (CurrentEnhancement.getRuleID( ) -^Ruleld) 

// Search InputKeys for Trigger ones (OpNum = 0) 

{ 

15 EnhanceStruct CurrentEnhanceStruct = new 

Enhances truct (CurrentEnhancement) ; 

Vector ParsedOpKeyIn « CurrentEnhanceStruct . getParsedOpKeyIn () ; 
/// 

int CurrentOpNum; 
20 int CurrencOpKey; 

for (int i^O; i<ParsedOpKeyIn . size ( ) ; i+=2) 
{ 

CurrentOpNum = 
( (Integer) ParsedOpKeyIn, elementAt (i) ) . intValue ( ) ; 
25 CurrentOpKey » 

( (Integer) ParsedOpKeyIn . elementAt (i+1) ) . intValue ( ) ; 

if ( CurrentOpNum«=OpNum &£ TriggerKeys . contains (new 
Integer (CurrentOpKey) ) ) 

{ 

30 Log.instance{ ) .writeLog(new LogDebug ( "Adding Rule Field to 

Affected List "-^ 

CurrentEnhancen'.ent . gei:RuleID( ) + '* : " + 

35 CurrentEnhancement . getFieldID( ) )J; 

AffectedFields.add( CurrentEnhanceStruct . getFieldID () ) ; 
brealc; //pass to next Enhancement 

1 

) // for over ParsedOpKeyIn 
40 )//if (CurrentEnhancement. getRulelD( I "=RuleId) 

l//lcop over Enhancements 

for (Enumeration E - Aff ectedFields . elements () ; E . hasMoreElements () ; ) 
/ 

45 string FieldId «= (String) E . nextElement () ; 

// Delete All Enhancemnts for this Rule & FieldlD 
deleteRulesWithRuleField (Ruleld, FieldId! ; 

) 

returr. Aff ectedRule; 
50 ) Z/deleteRuleFieldsWithTriggerKeys 
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// * 

// Delete in all Rules all Fields including an Enhancement from the given 
// ISID with Functionid equal to one from the given set. 

5 // ***** 

public OrderedSet deleteRulesFieldsWithlSFunctions (int ISID , Vector 
Changed Functions ) 
I 

Log. instance ( ) . writeLog (new LogDebug 
10 { "deleteRulesFieldsWithlSFunctions '*+ " ISID='* + ISID+ 

ChangedFunctions-"+ChangedFunctions )); 
Vector ToDel= new Vector!); 

OrderedSet Af f ectedRules - new OrderedSet (false} ; 
OrderedSet Af f ectedFields -> new OrderedSet ( false) ; 



15 



if ( ChangedFunctions--null It ChangedFunctions . si ze ( ) — 0) 
return null; 

Enhancements EnhancementList = CEM. instance (). getEnhanceraencs {) ; 
:or {Enumeration E - EnhancementList . elements I ) ; E . hasMoreElements I ) ; ) 



20 



Enhancement CurrentEnhancement = ( i Enhancement) (E . nextElemenc t } l ); 
if (CurrentEnhancement.getlSlDO ==» ISID && 
ChangecFunctions. contains t new Integer {CurrentEnhancement . getFunctioniD ()) ) ) 
{ 

25 //ToDel.addElement (CurrentEnhancement) ; 

Log. instance () .writeLog (new LogDebug { "Adding Rule Field to 
Affected List "+ 



30 



CurrentEnhancement .getRuleID{ ) +" : "+ 

CurrentEnhancement . getFieldlDO ) ) ; 

Af fectedFields . addfnew Pair (new Integer 

tC-jrrer.cEnhancement . cetRulelD ( ) ) , 

35 CurrentEnhancement. getFieldlDO ) ); 
) 

) 

for (Enumeration E2 « Aff ectedFieids . elements () ; E2 .hasMoreElements () ; ) 
( 

40 Pair CurrentPair = ( (Pair) (E2 . nextElement ( J ) ); 

// Delete All Enhancemnts for this Rule 5 "ieldID 

deleteRule3WithRuleField{ ( { Integer ) CurrentPair. first) . ir.-vaiue t ) , 
(String) Cur rent Pair. second) ; 
45 Log.instanceO .writeLog (new LogDebug ("Add .Rule to Affected 

List "-CurrentPair . first )) ; 

AffectedRules .add( (Integer ) CurrentPair . first ); 

) 

50 return AffectedRules; 
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■ / /del eteRulesFieldsWithlsrunct ions 



10 



15 



20 



25 



// In ail Rules find all Enhancements which met the fllowing conditions: 
// ISID * <given ISID>, FunctionID = <one from the given list>. 

// For all these Enhancements the Functionid is replaced with new one . 
// The "new" Id is placed immidiately after the matching "eld" Id in the 
// 2-nd input parameter. 

+ 

public OrderedSet edi tEnhancementsFunctionlDWithFunctionID ( int ISID , 
Vector KffectedFunctionldsl 

throws Exception 

i 

Log. instance () . writeLog (new LogDebug 
("editEnhancementsFunctionlDWithFunctionID "+ "ISID=>"+ISID+ 

Af fectedFunctionIds="+AffectedFunctionIds )); 
OrderedSet Af f ectedRuleSet = new OrderedSet (false) ; 

if ( Aff ectedFunctionIds==null It Af f ectedFunctionlds . size ( ) «*0 ) 
{ 

Log. instance {) .writeLog (new LogDebug 
( "edit£.ihancementsFunctionIDWithFunctionID: "There are no changed function 
IDs*' } . ; 

return null; 
) 

Enhancements EnhancementList = CEM. instance (). getEnhancements () ; 
for (Enumeration E = EnhancementList . elements 0 ; E.hasMoreElements ( ) ; ) 

I 

Enhancement CurrentEnhancement » { (Enhancement) (E. nextEiement () ) ) ; 

for (int i=0;i<AffectedFunctionIds.size() ;i+-2) 

( 

if (CurrentEnhancement . get Function ID t ) 
35 ( (Integer) AffectedFunctionlds.eieraentAt (i) ) .intValue () ) 

int OldFuncId = CurrentEnhancement. getFunctionID() ; 
int NewFuncId = 
( (Integer) AffeccedFunctionlds.elementAt (il ) .intValueO ; 

Log. instance () .writeLog (new LogDebug ("Replace Functxonid 

"+01dFuncId + 

"with " + NewFuncId+ " in Enhancement 

= "4-*Cur rent Enhancement) ) ; 

CurrentEnhancement , edit ( ) ; 

CurrentEnhancement . setFunctionlD (NewFuncId) ; 
CurrentEnhancement . upda te ( ) ; 

Log. instance () -writeLog (new LogDebug ( "Add Rule to Affected 
List "-CurrentEnhancement. getRulelDO ) ) ; 

Af f ectedRuleSet . add (new integer 
(CurrentEnhancement. getRuleID( ) ) ) ; 
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1 

1 

3 return Af f ectedRuleSet; 

) 

} //class 

// 

10 // Internal Helper Classes to support Flow computations 
// 



//' 



15 // 

// * 

class EnhanceOpSLis t extends SList 

20 

//•-• 

// 

25 // 

public EnhanceOpSList ( ) 
super ( ) ; 

30 ; 



35 // 



//* 



public EnhanceOpSList (int n) 

40 ( 

super (n) ; 



45 



//* 



// 



//• 

50 - 
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10 



public EnhanceOpSLisc (EnhanceOpSLlst s) 
( 

super (s) ; 

1 



public EnhanceOpNode findOp (int OpValue, String OpField) 
{ 

15 for (int i=0;i<si2e(l 

{ 

EnhanceOpNode Op « ( EnhanceOpNode} at (i) ; 

if (Op.getOpNiiin( I == OpValue) 

{ 

20 // Field does not matter if we are searching for 



OpNuin 0 

(OpValue ==0) ) 



if ( (OpField. equals ( Op . getFieldiD ( ) ) ) II 



( 

25 return Op ; 



} 

30 I 



) 

return null ; 





35 // 

* 

public EnhanceOpNode findGuon (int GuonValue) 

40 ( 

for (int i=0;i<size{) ;i++) 
( 

EnhanceOpNode Op = (EnhanceOpNode} at (i 1 ; 
if (0p.getGU0N( ) GuonValue) 

45 i 

return Op ; 

) 

1 

return null ; 

50 1 
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// Object that represents a single Inouc Parameter of a single 
10 Enhancement 

// Operation. 

// Every Enhancment should maintain a set of OpInputParara 



15 



20 



25 



30 



35 



class OpInputParam 

{ 

// Original Opnxim of Enhancment owning the Input Param 

public Int m_OpNum - 0 ; 

// ArgKey value of the Output Parameter 

public int m_KeyID = 0 ; 

// GUON value of Enhancment owning the Input Param 
public int m_OpGUON = 0 ; 

// Index of Input Parameter. Defined from the "UNIR Allocation" 
public int m_KeyIndex - 0 ; 

//////////// 
// Constructors 
//////////// 

public OpInputParam ( int OpNum, int KeylD, int GUON) 
( 

m_OpNum = OpNum ; 
m_KeyID = Key ID ; 
m_OpGUON = GUON ; 
m_KeyIndex = 0 ; 

I 



40 



45 



//////////// 

// Get Set 
//////////// 
public int getGUON ( ) 
public void setGUON(int Value) 
public int getKeyO 
m^KeylD; ) 

public void setKeyiint Value) 

public GuonKeyParam getGuonKeyt) 
Integer (m_KeyID) , new integer (m_OpGUON) ) ; I 



(return ra_OpCUON; 1 
{m_OpGUON - Value; 1 

I return 

{m_^KeyID - Value; 1 

{return new GuonKeyParan{new 



50 



public int getlndexO 

public void setlndextint Value) 



{return m_KeyIndex; | 
{m_Key Index - Value; ) 
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10 ^ — 

class GuonKeyParam extends Pair 

i 

public int m_GUON - 0 ; 
15 public int m_Key = 0 ; 

public GuonKeyParam () 
( 

super ( ) ; 

20 i 

public GuonKeyParam (Integer Key, Integer GUON) 
{ 

super (Key, GUON) ; 

25 ) 

public int hashCodeO 
( 

Integer nl - ( Integer) first ; 
30 Integer n2 = ( Integer i second; 

return ( (nl. intValue () « 16) + n2 . intValue t ) ); 



public boolean equals (Pair pair) 

35 I 

Integer nl - (Integer) first; 
Integer n2 = (Integer) pair . first ; 
Integer n3 = ( Integer) second; 
Integer n4 - (Integer)pair. second; 
40 return ( ( nl- intValue () == n2 . intValue ( ) ; && ( 

n3.in-value() == n4. intValue () ) ); 
1 



45 



// Object that representes a single Output Parameter of a single 
50 Enhancement Operation. 
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10 



15 



20 



// Every Enhancment should maincain a set of OpOutpucPara.Ti 



class OpOutputParam 
( 

// Set of Key/GUON pairs, elements are JGL Pairs 
public OrderedSet in_KeyGUONLisx « new OrderedSet ( false ); // No 
Duplicates 

// Set of Keys, elements are Integers 

public OrderedSet ni_KeyList - new OrderedSet ( false ); // No 
Duplicates 

// set of GUONs. elements are Integers 

public OrderedSet m_GUONList - new OrderedSet ( false ) ; // No 

Duplicates 



.'/ Get Set 



public Enumeration getGUONsO 
public Enumeration getKeys ( ) 
25 m_KeyList. elements (); » 

public Enumeration getGUONKeys ( ) 



(return m_GUONList . elements t ); 1 
( return 

{ return m_KGyGUONList . elements t ) ; } 



30 



// FFU: 

//public Keys getGUONKeys (GUON) ; 
//public GUONs getKeyGUONs(Key) - 



35 //- 



// 



40 



45 



//* 



public void addKey(int Key, int GUON) 



Integer (GUONl 1 ; 



Pair KeyGuon - new GuonKeyParam (new Integer (Key) , new 

m_KeyGUONList.add(KeyGuon) ; 
m_KeyList.add(new Integer (Key) ) ; 
m GUONList.addlnew Integer (GUON) ) ; 
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public byten getOpKeyOutAsArray ( ) 
{ 

5 try 

( 

Arguments args = new Arguments {) ; 

for (Enumeration EK » gecKeysO; EK .hasMoreElements ( ) ; ) 
( 

10 Integer outKey = ( Integer) EK. nextElement () ; 

args. put (ArgKeys.KEY_KEY_ID, new 

UNIRShorc( {short:)outKey.intValuet) ) ) ; 

) 

15 return args . toByteArray( ) ; 

) 

catch (Exception e){) 
return null ; 

20 J 



} 

25 



// Object that representes a single Enhancement Operation. 
// Flow Manager should maintain a set of EnhanceOpNode 

30 * — * — 

class EnhanceOpNode extends EnhanceStruct 

// Unique Identifier of the Op, Created at Runtir-.e. "Global 

35 Unique Cp Num" 

int m_GUON = 0 ; 

// String Description of the Operation, Created "Recursively" at Runtime. 
String m_Description » null ; 

40 // orderedSet version of EnhanceStruct , OpKeysln. Each element is 

of type OpInputParam 

OrderedSet r:\_TranslatedOpKeysIn = new OrderedSec ( false j; // iJo 

Duplicates 

Vector m_TranslatedOpKeyslnVector = new Vector (); 

45 

// List of Fields that are the "End Product" of this GUOH. null 
in most objects, has value only for 

// "End" Objects. Becuase of Optimizations, one GUON can feed 
more than one field. Elements are Strings 
50 // that were the FieldID of Original Enhancement. 
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30 



35 



-rderedSet m_OutFields - new OrderedSet( false ) ; 

// Objecc that manages the lists of output param keys of this Enhancment 
OpOutputParam m_OpKeysOuc = new 0p0ucputParajn( ) ; 

// ISM, Gatherer & Node ID of this (derived from EnhanceStruct . ISID) 
int m_ISMID « 0; 

int m_GathererID «» 0; 
int m__NodeID - 0; 

// Flag if this GUON was originally the "last" (Last OpNum for a FIELDID) 
boolean m IsLast = false ; 



// The list of EnhanceOpNodes can be viewed as a Directed Acyclic 
15 Graph fDAG), with the GUONS as vertices 

// and the pairs of tGUON n, GUON m using output of n as Input) 

as edges. 

// The Following are Variables Used in a TOPLOGICAL SORT using 
Depth First Search (DFS) . 
20 final static int WHITE = 0; 

final static int GRAY =- 1; 
final static int BLACK = 2; 
public int m_ColorStatus = WHITE; 

public EnhanceOpNode m_Pi = null; // Predecessor Node, if 
25 null, ^hen root (Several roots possible) 

public int ra^DiscoverTime " 0 ; // Start Time of DFS on this 

GUON 

public int m_FinishTirae - 0; // End Time of DFS 

on this GUON (and adjaceny list) 



//////////// 
// Constructors 
//////////// 

public EnhanceOpNode ( Enhancement E) 
( 

super (E) ; 

1 



public EnhanceOpNode (int RulelD, String FieidiD, short OpNuin, int ISID, 
40 int FunctionID, byte ( ] OpKeyIn, 

Vector ParsedOpKeyIn 

) 

( 

super (RulelD, FieldID, OpNum, ISID, FunctionID, OpKeyIn, 
45 ParsecOpKeyIn ) ; 

) 

//////////// 
// Operations 
50 //////////// 
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10 



pair 
OpNum 



// Create a list of OpInputParam in in_TranslatedOpKeysIn from the 
// arguments in m_OpKeyIn. Add the corresponding GUON for every 
//in the OpKeyln. 



//* 



public void translateOpKeyIn (EnhanceOpSList OpList) 
{ 

15 try 

( 

Argiunents a new Arguments ( getOpKeyInO I; 

for (Enumeration EK ° a . elements () ; EK, hasMoreEiements { ) ; 

) 

20 i 

short OpValue = f (UNIRShort) 
EK.nextElement O ) , getShortValue ( ) ; 

short KeyValue - ((UNIRShort) 
EK.nextElement t) } . getShortValue ( ) ; 
25 OpInputParam tmp null ; 

EnhanceOpNode CurrentOp = OpList . findOp (OpValue, 

m_FieldID) ; 

tmp - new OpInputParam (OpValue, KeyValue, 

CurrentOp . getGUON (1 ) ; 
30 m_Tran5lated0pKeysIn.add(tmp) ; 

m_TranslatedOpKeysInVector . addElemenr (tmp) ; 

1 

Icatch (Exception EAM } 

35 

// pass thru m_TranslatedOpKeysIn, replacing occurences of 
40 oldGUON with newGUON 



public void SwapInputKeyGUOM (int oldGUON, int newGUON) 

45 ( 

for (Enumeration EK = m_TranslatedOpKeysIn, elements () ; 
EK.hasKoreElements ( ) ; ) 

( 

OpInputParam InParam - (OpInputParam) EK . nextElement () j 
50 if (InParam. getGUON 0 oldGOON) 
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InParam. secGUON (newGUON) ; 



10 



// Add Op CO Lists of output of current EnhanceOpNode 



15 



public void addOutputParam (int Key, int GOON) 



m_OpKeysOut. addKey<Key, GUON) ; 



20 



// Get Set 



25 



30 



35 



40 



public 
public 
public 

m_GathererID; I 
public 
public 

ra_NodeID; } 

public 
public 
public 
public 
public 
public 

ra_ISMID; ) 

publ ic 

Value; i 



int getGUONO 

void setGUONfint Value) 

int getGathererlD ( ) 

void setGathererlDdnt Value) 
int getNodelDU 

void secNodelDdnt Value) 

boolean getLastFlag{ ) 

void setLastFlag(boolean value) 

String getDescription ( ) 

void setDescription(String value) 

int getlSMlDO 

void setISMID(int Value) 



( return m_GUON; ) 
im_GUON = Value; ) 

{ return 

(m_GathererID « Value; ) 

(return 

{m_NodeID = Value; I 
(return in_:sLast M 

tm_l3La5t » value ; ) 
(return m_Description ;} 
(m_De3cription - value ; ] 
I return 

(m ISMID - 



45 



// Topology Sort 
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public Ir.c gecColorO t return 

m_CoiorStatus; ) 

public void setColortint Value) 

Value; 1 

5 public void setDFSDiscoverTime ( int Value) 

Value; i 

public void secDFSFinishTime ( inc Value) 
Value; 1 

public void setPredecessor (EnhanceOpNode Value) (m_Pi=Value; } 

10 



( rR_ColorStatus = 
lm_DiscoverTime = 
{m_FinishTiine => 



public void addOutFields (String FieidID) 
15 I m_Out Fields. add (FieldID); 1 

public void addOut Fields (OrderedSet FieldList) 
= m_OutFields . union ( FieldList) ; ) 

public OrderedSet getOutFields ( ) 

m_Out Fields; ) 

20 public Enumeration getlnlteracorO 

m_TranslatedOpKeysInVector . elements () ; ) 

public Enumeration getOutputGUONs ( ) 
m_OpKeysOut .geCGUONs {) ; ) 

public Enumeration getOutputGUONKeys () 
25 m_OpKeysOut . getCUONKeys ( ) ; ) 

public Enumeration getOutputKeys () 
m_OpKeysOut . getKeys { ) ; I 



{m_OutFields 
{ return 



{ return 



{ return 



{ return 



( return 



30 



// Convert OpKeyIn structure co a byte array for 

UNIRInstruction 

35 

//*** *•* ********************** 



public bytet) getOpKeylnAsArray { ) 
i 

40 cry 

{ 

Arguments args - new Arguments (); 
for {Enumeration EK = getlnlterator ( ) ; 

EK.hasMoreElements ( ) ; ) 

45 ( 

OpInputParara InParara =» 
(OpIncutParam) EK. nextElement ( ) ; 

args. put (ArgKeys . ARGKEy_E::HANCEMENT_OP_NUM, 
new UNIRShort ( '.short) InParam.m_Keylndex) ) ; 
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args . put l ArgKeys . KEY_KEY_ir . new 

UNIRShort ( t short) InParam.m_KeyID) ) ; 

1 

return args. toByteArray () ; 

I 

catch (Exception 



10 



25 



35 



45 



return null ; 



15 // Convert OpKeyOut structure to a byte array for the 

UNIRinstruction 



public byte [J getOpKeyOucAsArray ( I 
{ 

return m_OpKeysOut .getOpKeyOutAsArray ( ) j 

} 



// String representation of this Enhancement 

30 // - * — ' **** 



public String toStringO 
{ 

String s = iti_GUON + " [" ; 



for (Enumeration EK « getlnl terator { ) ; EK. hasMoreElements ( ) ; ) 
{ 

OpInputParam InParam = (OpInputParam) EK. r.extElement ( ) ; 
s += + InParam. m_OpGU0N + " : *' + 
40 InParani.m_OpNum + ":" + InParam. m_Keylndex + " : " + InParam. m_Key ID+" )" ; 



s +- "] . t" ; 

for (Enumeration EK2 = m_OutFields - elements () ; 
EK2. hasMoreElements () ; ) 

{ 

String OutFld = (String) EK2 . nextElement ( 1 ; 
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s *- " ("+OutFld+"l "; 



S+- . I" ; 

5 

for (Enumeration EK3 = getOutpucGUONKeys ( ) ; 
EK3.hasMoreEleniencs() ; 1 
i 

Pair GuonKey = (pair) EK3.nextElement{ ) ; 
10 s += " ("+GuonKey+") 



15 m_ISMID + + m_GathererID + " : " + m_NodeID 

return s ; 



20 



50 



25 //' 



// to support special operation of slist 



public boolean equals (Object ob j ) 
( 

return { m_GUON ( (EnhanceOpNodel obj ) . getGUON 0 ); 



35 // to support special operation of slist 



// 

public int hashCodeO 

40 { 

//byte vl - (byte) (m_GUOW 6 OxOOOOOOff ) ; 
byte vl = 0 ; 
int v2 = 0 ; 

if ( !m_FieldID. equals C") ) 
45 v2 - m_FieldID.ha3hCode(J 6 OxOOOOffff 

return ( vl « 24 ) + (v2 « 8 1 + m_OpNum ; 

) 
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3 //* 
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CLAIMS 

What is claimed is: 

1 . A system for tracking network session information, the system 
comprising: 

5 an information source module having a source information input and a 

standardized information output, a source information corresponds to 
network usage information, a standardized infoimation corresponds 
to the network usage information transformed into a standard format; 
a first program having at least a first standardized information input and 
1 0 an enhanced data output, a first standardized information input 

corresponding to the standardized information, an enhanced data 
corresponding to the standardized data after at least a partial 
transformation, the at least partial transformation being defined 
according to a data record format; 
1 5 a second program having at least a first enhanced data input and a data 

record output, the first enhanced data corresponding to the enhanced 
data, a data record corresponding to the first enhanced data, the data 
record being formatted according to the data record format; 
a database storing the data record; and 
20 wherein the second program merges duplicate data records that represent 

the same network usage information. 
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2. The system of claim 1 wherein the at least partial transformation 
is defined from a data enhancement procedure, and wherein the data record 
format includes a plurality of fields and wherein the data enhancement 

5 procedure defines how the standardized information is to be transformed into 

the plurality of fields of the data record format. 

3 . The system of claim 2 wherein the data enhancement procedure 
includes at least a field enhancement wherein the field enhancement defines a 
source for a predetemiined field in the plurality of fields. 

1 0 4. The system of claim 2 wherein the data enhancement procedure 

includes at least a field enhancement wherein the field enhancement defines a 
ftmction to be applied to at least a portion of the standardized data. 

5 . The system of claim 2 wherein the data enhancement procedure 
defines a plurality of field enhancements, wherein each field enhancement 

1 5 defines network usage information to be stored in the plurality of fields. 

6. The system of claim 5 wherein at least a first field enhancement 
corresponds to an information source module that performs aggregation on at 
least a portion of the network usage information to be stored in at least a first 
field in the plurality of fields. 

20 7. The system of claim 6 wherein the aggregation occurs by 

aggregating packet flow information, the packet flow information corresponding 
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to a plurality of packets, where each packet in the aggregated packets has the 
same IP source address, destination address and port information-. 

8, The system of claim 5 wherein at least a first field enhancement 
corresponds to a set of information source modules that performs filtering and 

5 aggregation on at least a portion of the network usage information to be stored 

in at least a first field in the plurality of fields. 

9. The system of claim 5 wherein at least a first field enhancement 
corresponds to a set of information source modules that performs merging, 
filtering, and aggregation on at least a portion of the network usage information 

10 to be stored in at least a first field in the plurality of fields. 

10. The system of claim 5 wherein at least a first field enhancement 
corresponds to a set of information source modules that performs event 
notification and provisioning activation. 

1 1 , The system of claim 2 further comprising a second information 
1 5 source module, the second information source module having a second source 

information input and a second standardized information output, a second 
source information corresponds to a second network information, a second 
standardized information corresponds to the second network information 
transformed into a standard format, and wherein the data enhancement 
20 procedure includes a first definition of at least a first field in the plurality of 

fields being from the standardized information, and at least a second definition 
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of a second field in ihe pluraliry of fields being from the second standardized 
information. 

12. The system of 1 1 further comprising a first information source 
and a quality of service information source, and wherein the information source 

5 module receives the network usage information from the first information 

source, and wherein the second information source module receives the second 
network information from the quality of service information source, and 
wherein the first definition defines that a source IP address supplied by the first 
information source should be put into the first field, and wherein the second 
1 0 definition defines a supplied by the DNS server should be put into the second 

field. 

13. The system of claim 1 wherein the second program manages the 
first program and the information source module. 

14. The system of claim 1 wherein the second program causes the 
1 5 data record to be stored in the database. 

15. The system of claim 1 wherein the information source module is 
configured to receive the network usage information from a predetermined 
network device. 

16. The system of claim 1 wherein the at least partial transformation 
20 includes policy-based data aggregation which defines how network usage data 

should be aggregated. 
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1 7. The system of claim 1 wherein the network usage information 
includes IP session data. 

1 8. The system of claim I wherein the data format includes a 
plurality of fields including a source IP field, a destination IP field, a source 

5 host field, a destination host field, a service type field, a date and time field, a 

duration field, a total number of bytes field, and a counter field. 

19. The system of claim 1 fiirther comprising a customer care and 
billing system coupled to the database, the customer care and billing system for 
accessing the database to generate a bill from the data record. 

10 20. A network usage accounting system comprising: 

an information source module coupled to receive network information 

fi-om a network device; 
a gatherer coupled to receive the network information source module, 
the gatherer for performing data enhancements on the network 
1 5 information to create a plurality of data records; 

a central database storing the plurality of data records; and 
a central event manager coupled to receive the plurality of data records, 
the central event manager merging duplicate records in the plurality 
of data records, the duplicate records representing the same network 
20 usage information. 

21. The system of claim 20 wherein the information source module 
is configured to receive network information from a network device chosen 
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from the group of network devices consisting of a proxy server, a domain name 
service server, a firewall, a RADIUS server, and a router. 

22. The system of claim 20 wherein the gatherer performs filtering 
and aggregation on the network information. 
5 23 . The system of claim 20 wherein the plurality of data records 

have a predefined data format comprising a plurality of fields, and wherein the 
data enhancements includes at least a first data field enhancement to enhance 
the network information to fill in the first data field, 

24. The system of claim 23 wherein the first data field corresponds 
10 to a source IP address field and wherein the data enhancement includes 

extracting a source IP address value from the network information. 

25. The system of claim 23 wherein the first data field corresponds 
to a domain name field and wherein the data enhancement includes requesting a 
domain name from a domain name service server. 

15 26. A method of gathering and aggregating network usage 

information from a set of network devices, the system using at least a first 
program and a second program coupled in communications, the method 
comprising: 

accessing network commimications usage information; 
20 filtering and aggregating the network communications usage information 

using the first program; 
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completing a plurality of data records from the filtered and aggregated 
network communications usage information, the plurality of data 
records corresponding to network usage by a plurality of users; 
storing the plurality of data records; and 
5 merging duplicate records in the plurality of data records. 

27. The method of claim 26 wherein completing the plurality of 
records includes accessing user account information, 

28. The method of claim 26 wherein completing the plurality of 
records includes for each data record determining a corresponding source IP 

1 0 address, a corresponding domain name, a corresponding type of service used, 

and a corresponding amount of time used. 

29. The method of claim 26 wherein the system includes a third 
program coupled in communications with at least the second program and 
wherein completing the plurality of records includes accessing the third program 

1 5 to determine network account information and including the network account 

information in at least a first record in the plurality of records. 

30. The method of claim 26 wherein merging the duplicate records 
includes comparing a plurality of fields in the data records to identify data 
records corresponding to the same network session and merging the 

20 corresponding records. 

3 1 . The method of claim 26 wherein merging the duplicate records 
includes automatically deleting a duplicate record. 
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32. The method of claim 26 further comprising using the second 
program to automatically update the filtering and aggregation performed by the 
first program. 

33. A network usage tracking system comprising: 

5 means for accessing network conununications usage information; 

means for filtering and aggregating the network communications usage 

information using die first program; 
means for completing a plurality of data records fi*om the filtered and 
aggregated network communications usage information, the plurality 
1 0 of data records corresponding to network usage by a plurality of 

users; 

means for storing the plurality of data records; and 

means for merging duplicate records in the plurality of data records. 

34. The network usage tracking system of claim 34 wherein the 
1 5 means for completing the plurality of data records includes one or more 

networked computers running one or more programs. 

35. The network usage tracking system of claim 34 wherein the 
means for storing the plurality of data records includes a relational database. 

36. The network usage tracking system of claim 34 wherein the 
20 means for storing the plurality of data records includes an object database. 

37. A system for accounting for network usage comprising: 
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a plurality of gatherers coupled to receive network usage information, 
each gatherer for performing data enhancements on the network 
information to create a plurality of data records; and 
a central event manager coupled to receive the plurality of data records, 
5 the central event manager merging duplicate records in the plurality 

of data records, the duplicate records representing the same network 
usage information. 
38. The system of claim 37 farther comprising a customer care and 
billing application for receiving the plurality of data records and generating 
10 bills. 
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